The Email Sanitizer before 1.133 for Procmail allows remote attackers to bypass the mail filter and execute arbitrary code via crafted recursive multipart MIME attachments.
Link | Tags |
---|---|
http://www.impsec.org/email-tools/sanitizer-changelog.html | patch |
http://www.iss.net/security_center/static/7847.php | vdb entry patch |
http://www.securityfocus.com/bid/3820 | vdb entry patch |