Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-2124

Опубликовано: 20 апр. 2012
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4squirrelmailWill not fix
Red Hat Enterprise Linux 5squirrelmailFixedRHSA-2013:012608.01.2013

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=814671squirrelmail: not fixed in RHSA-2012:0103

EPSS

Процентиль: 73%
0.00769
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 12 лет назад

functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.

nvd
больше 12 лет назад

functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.

debian
больше 12 лет назад

functions/imap_general.php in SquirrelMail, as used in Red Hat Enterpr ...

github
больше 3 лет назад

functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preference files. NOTE: this issue exists because of an incorrect fix for CVE-2010-2813.

oracle-oval
больше 12 лет назад

ELSA-2013-0126: squirrelmail security and bug fix update (LOW)

EPSS

Процентиль: 73%
0.00769
Низкий

5 Medium

CVSS2