USN-3483-2: procmail vulnerability Ubuntu Security Notice USN-3483-2 21st November, 2017 procmail vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary formail could be made to crash or run programs if it processed specially crafted mail. Software description procmail – Versatile e-mail processor Details USN-3483-1 fixed a vulnerability in procmail. This update provides thecorresponding update for Ubuntu 12.04 ESM. Original advisory details: Jakub Wilk discovered that the formail tool incorrectly handled certain malformed mail messages. An attacker could use this flaw to cause formail to crash, resulting in a denial of service, or possibly execute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 12.04 LTS: procmail 3.22-19ubuntu0.2 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will [ more… ]