CVE-2014-3618
Heap-based buffer overflow in formisc.c in formail in procmail 3.22 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted email header, related to "unbalanced quotes."
Date published : 2014-09-08
http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html