commands.c in qmail, when running on 64 bit platforms with a large amount of virtual memory, allows remote malicious users to cause a denial of service and possibly execute arbitrary code via a long SMTP command without a space character, which causes an array to be referenced with a negative index.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dan bernstein qmail |