From: Matthias A. <mat...@gm...> - 2006-03-01 00:19:56
|
Ed Wilts <ew...@ew...> writes: > On Mon, Feb 27, 2006 at 08:00:34PM +0000, Rob MacGregor wrote: >> > Delivered-To: myadoofa_at_adoofa.com >> > Received: from pop3.zippymail.co.uk [81.201.128.18] >> > by localhost with IMAP (fetchmail-6.2.5) >> >> Note that you're running an old, vulnerable, version of >> fetchmail. > > The version does not necessarily mean that the image is vulnerable. Red > Hat backports their security patches to versions that the original > developers may update by releasing a new version (with possible other > fixes, features, and bugs). I expect that other distributions do the same. > http://www.redhat.com/advice/speaks_backport.html Even if that's the case and the vulnerability has been removed by a backported fix, the version (6.2.5) is still old and no longer supported by the current fetchmail maintainers on the fetchmail* mailing lists. See if the problem reproduces with a newer version, if it does, ask here; if it does not, ask your packager for support. -- Matthias Andree |