Логотип exploitDog
bind:"CVE-2008-2711" OR bind:"CVE-2009-2666" OR bind:"CVE-2007-4565"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2008-2711" OR bind:"CVE-2009-2666" OR bind:"CVE-2007-4565"

Количество 16

Количество 16

oracle-oval логотип

ELSA-2009-1427

почти 16 лет назад

ELSA-2009-1427: fetchmail security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2008-2711

около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2008-2711

около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2008-2711

около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2008-2711

около 17 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-mgrc-7p8m-89r3

около 3 лет назад

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

EPSS: Низкий
ubuntu логотип

CVE-2009-2666

почти 16 лет назад

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

CVSS2: 6.4
EPSS: Низкий
redhat логотип

CVE-2009-2666

почти 16 лет назад

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2009-2666

почти 16 лет назад

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

CVSS2: 6.4
EPSS: Низкий
debian логотип

CVE-2009-2666

почти 16 лет назад

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' ch ...

CVSS2: 6.4
EPSS: Низкий
ubuntu логотип

CVE-2007-4565

почти 18 лет назад

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2007-4565

почти 18 лет назад

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2007-4565

почти 18 лет назад

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2007-4565

почти 18 лет назад

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-f5g6-55mc-jx72

около 3 лет назад

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

EPSS: Низкий
github логотип

GHSA-8x9c-m5v9-8766

около 3 лет назад

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2009-1427

ELSA-2009-1427: fetchmail security update (MODERATE)

почти 16 лет назад
ubuntu логотип
CVE-2008-2711

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

CVSS2: 4.3
3%
Низкий
около 17 лет назад
redhat логотип
CVE-2008-2711

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

CVSS2: 2.6
3%
Низкий
около 17 лет назад
nvd логотип
CVE-2008-2711

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

CVSS2: 4.3
3%
Низкий
около 17 лет назад
debian логотип
CVE-2008-2711

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, ...

CVSS2: 4.3
3%
Низкий
около 17 лет назад
github логотип
GHSA-mgrc-7p8m-89r3

fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.

3%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2009-2666

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

CVSS2: 6.4
1%
Низкий
почти 16 лет назад
redhat логотип
CVE-2009-2666

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

CVSS2: 4.3
1%
Низкий
почти 16 лет назад
nvd логотип
CVE-2009-2666

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

CVSS2: 6.4
1%
Низкий
почти 16 лет назад
debian логотип
CVE-2009-2666

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' ch ...

CVSS2: 6.4
1%
Низкий
почти 16 лет назад
ubuntu логотип
CVE-2007-4565

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

CVSS2: 5
2%
Низкий
почти 18 лет назад
redhat логотип
CVE-2007-4565

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

CVSS2: 2.6
2%
Низкий
почти 18 лет назад
nvd логотип
CVE-2007-4565

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

CVSS2: 5
2%
Низкий
почти 18 лет назад
debian логотип
CVE-2007-4565

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to ...

CVSS2: 5
2%
Низкий
почти 18 лет назад
github логотип
GHSA-f5g6-55mc-jx72

socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

1%
Низкий
около 3 лет назад
github логотип
GHSA-8x9c-m5v9-8766

sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by refusing certain warning messages that are sent over SMTP.

2%
Низкий
около 3 лет назад

Уязвимостей на страницу