VYPR

Email Filter

by Bogofilter

CVEs (3)

  • CVE-2005-4591Dec 31, 2005
    risk 0.00cvss epss 0.05

    Heap-based buffer overflow in bogofilter 0.96.2, 0.95.2, 0.94.14, 0.94.12, and other versions from 0.93.5 to 0.96.2, when using Unicode databases, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via "invalid input sequences" that lead to heap corruption when bogofilter or bogolexer converts character sets.

  • CVE-2005-4592Dec 31, 2005
    risk 0.00cvss epss 0.03

    Heap-based buffer overflow in bogofilter and bogolexer 0.96.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via words that are longer than the input buffer used by flex.

  • CVE-2004-1007Mar 1, 2005
    risk 0.00cvss epss 0.01

    The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (application crash) via mail headers that cause a line feed (LF) to be replaced by a null byte that is written to an incorrect memory address.