Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2012-5468

Disclosure Date: December 18, 2012 (last updated October 05, 2023)
Heap-based buffer overflow in iconvert.c in the bogolexer component in Bogofilter before 1.2.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an email containing a base64 string that is decoded to incomplete multibyte characters.
0
Attacker Value
Unknown

CVE-2010-2494

Disclosure Date: July 08, 2010 (last updated October 04, 2023)
Multiple buffer underflows in the base64 decoder in base64.c in (1) bogofilter and (2) bogolexer in bogofilter before 1.2.2 allow remote attackers to cause a denial of service (heap memory corruption and application crash) via an e-mail message with invalid base64 data that begins with an = (equals) character.
0
Attacker Value
Unknown

CVE-2005-4591

Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in bogofilter 0.96.2, 0.95.2, 0.94.14, 0.94.12, and other versions from 0.93.5 to 0.96.2, when using Unicode databases, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via "invalid input sequences" that lead to heap corruption when bogofilter or bogolexer converts character sets.
0
Attacker Value
Unknown

CVE-2005-4592

Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in bogofilter and bogolexer 0.96.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via words that are longer than the input buffer used by flex.
0
Attacker Value
Unknown

CVE-2004-1007

Disclosure Date: March 01, 2005 (last updated February 22, 2025)
The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (application crash) via mail headers that cause a line feed (LF) to be replaced by a null byte that is written to an incorrect memory address.
0
Attacker Value
Unknown

CVE-2002-2267

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
bogopass in bogofilter 0.9.0.4 allows local users to overwrite arbitrary files via a symlink attack on the bogopass temporary file.
0