Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mgrc-7p8m-89r3

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

EPSS

Процентиль: 87%
0.03316
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

redhat
около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

nvd
около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

debian
около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, ...

oracle-oval
почти 16 лет назад

ELSA-2009-1427: fetchmail security update (MODERATE)

EPSS

Процентиль: 87%
0.03316
Низкий

Дефекты

CWE-20