Arbitrary Code Execution Vulnerability in smail 3.2.0.120 Signal Handlers

Arbitrary Code Execution Vulnerability in smail 3.2.0.120 Signal Handlers

CVE-2005-0893 · HIGH Severity

AV:N/AC:H/AU:N/C:C/I:C/A:C

modes.c in smail 3.2.0.120 implements signal handlers with certain unsafe library calls, which may allow attackers to execute arbitrary code via signal handler race conditions, possibly using xmalloc.

Learn more about our Web Application Penetration Testing UK.