UbuntuUpdates.org

Package "fetchmail"

Name: fetchmail

Description:

SSL enabled POP3, APOP, IMAP mail gatherer/forwarder

Latest version: 6.4.39-1ubuntu0.1
Release: plucky (25.04)
Level: updates
Repository: main
Homepage: https://www.fetchmail.info

Links


Download "fetchmail"


Other versions of "fetchmail" in Plucky

Repository Area Version
base main 6.4.39-1
security main 6.4.39-1ubuntu0.1

Changelog

Version: 6.4.39-1ubuntu0.1 2025-10-23 22:08:17 UTC

  fetchmail (6.4.39-1ubuntu0.1) plucky-security; urgency=medium

  * SECURITY UPDATE: DoS via 334 reply from SMTP server
    - debian/patches/CVE-2025-61962.patch: avoid NULL+1 deref on invalid
      AUTH reply in smtp.c.
    - CVE-2025-61962

 -- Marc Deslauriers <email address hidden> Wed, 08 Oct 2025 07:34:31 -0400

CVE-2025-61962 In fetchmail before 6.5.6, the SMTP client can crash when authenticating upon receiving a 334 status code in a malformed context.



About   -   Send Feedback to @ubuntu_updates