CVE-2010-2494

N/A Unknown
Published: July 08, 2010 Modified: April 29, 2026
View on NVD

Description

Multiple buffer underflows in the base64 decoder in base64.c in (1) bogofilter and (2) bogolexer in bogofilter before 1.2.2 allow remote attackers to cause a denial of service (heap memory corruption and application crash) via an e-mail message with invalid base64 data that begins with an = (equals) character.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/40427
Source: secalert@redhat.com
Vendor Advisory
http://secunia.com/advisories/41239
Source: secalert@redhat.com
http://www.osvdb.org/66002
Source: secalert@redhat.com
http://www.securityfocus.com/bid/41339
Source: secalert@redhat.com
http://www.ubuntu.com/usn/USN-980-1
Source: secalert@redhat.com
http://bogofilter.sourceforge.net/security/bogofilter-SA-2010-01
Source: af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=oss-security&m=127814747231102&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=oss-security&m=127831760712436&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=oss-security&m=127840569013531&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://marc.info/?l=oss-security&m=127844323105405&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/40427
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://secunia.com/advisories/41239
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/66002
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/41339
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.ubuntu.com/usn/USN-980-1
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2010/2233
Source: af854a3a-2127-422b-91ae-364da2661108
https://bugzilla.redhat.com/show_bug.cgi?id=611551
Source: af854a3a-2127-422b-91ae-364da2661108

40 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
4.6%
89th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

bogofilter