DescriptionBuffer overflow in the spa_base64_to_bits function in Exim before 4.43, as originally obtained from Samba code, and as called by the auth_spa_client function, may allow attackers to execute arbitrary code during SPA authentication.
NVD CVSS v2 Base Score: 4.6 (AV:L/AC:L/Au:N/C:P/I:P/A:P)
Novell/SUSE informationNovell Bugzilla entries: 64676, 64890 SUSE Security Advisories:
- SUSE-SR:2005:002, published Wednesday, Jan 26th 2005 17:00 MEST
List of released packages
|Product(s)||Fixed package version(s)||References|