UbuntuUpdates.org

Package "fetchmail"

Name: fetchmail

Description:

SSL enabled POP3, APOP, IMAP mail gatherer/forwarder

Latest version: 6.4.38-1ubuntu4.1
Release: noble (24.04)
Level: security
Repository: main
Homepage: https://www.fetchmail.info

Links


Download "fetchmail"


Other versions of "fetchmail" in Noble

Repository Area Version
base main 6.4.38-1ubuntu4
updates main 6.4.38-1ubuntu4.1

Changelog

Version: 6.4.38-1ubuntu4.1 2025-10-23 20:07:24 UTC

  fetchmail (6.4.38-1ubuntu4.1) noble-security; urgency=medium

  * SECURITY UPDATE: DoS via 334 reply from SMTP server
    - debian/patches/CVE-2025-61962.patch: avoid NULL+1 deref on invalid
      AUTH reply in smtp.c.
    - CVE-2025-61962

 -- Marc Deslauriers <email address hidden> Wed, 08 Oct 2025 07:40:03 -0400

CVE-2025-61962 In fetchmail before 6.5.6, the SMTP client can crash when authenticating upon receiving a 334 status code in a malformed context.



About   -   Send Feedback to @ubuntu_updates