Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-0021

Опубликовано: 02 мая 2005
Источник: nvd
CVSS2: 7.2
EPSS Низкий

Описание

Multiple buffer overflows in Exim before 4.43 may allow attackers to execute arbitrary code via (1) an IPv6 address with more than 8 components, as demonstrated using the -be command line option, which triggers an overflow in the host_aton function, or (2) the -bh command line option or dnsdb PTR lookup, which triggers an overflow in the dns_build_reverse function.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:university_of_cambridge:exim:*:*:*:*:*:*:*:*
Версия до 4.40 (включая)
cpe:2.3:a:university_of_cambridge:exim:4.41:*:*:*:*:*:*:*
cpe:2.3:a:university_of_cambridge:exim:4.42:*:*:*:*:*:*:*

EPSS

Процентиль: 86%
0.02817
Низкий

7.2 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 20 лет назад

Multiple buffer overflows in Exim before 4.43 may allow attackers to execute arbitrary code via (1) an IPv6 address with more than 8 components, as demonstrated using the -be command line option, which triggers an overflow in the host_aton function, or (2) the -bh command line option or dnsdb PTR lookup, which triggers an overflow in the dns_build_reverse function.

redhat
больше 20 лет назад

Multiple buffer overflows in Exim before 4.43 may allow attackers to execute arbitrary code via (1) an IPv6 address with more than 8 components, as demonstrated using the -be command line option, which triggers an overflow in the host_aton function, or (2) the -bh command line option or dnsdb PTR lookup, which triggers an overflow in the dns_build_reverse function.

debian
больше 20 лет назад

Multiple buffer overflows in Exim before 4.43 may allow attackers to e ...

github
больше 3 лет назад

Multiple buffer overflows in Exim before 4.43 may allow attackers to execute arbitrary code via (1) an IPv6 address with more than 8 components, as demonstrated using the -be command line option, which triggers an overflow in the host_aton function, or (2) the -bh command line option or dnsdb PTR lookup, which triggers an overflow in the dns_build_reverse function.

EPSS

Процентиль: 86%
0.02817
Низкий

7.2 High

CVSS2

Дефекты

NVD-CWE-Other