İçeriğe atla
Noroxi

fetchmail kayıtları

fetchmail üreticisine ait 24 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
5
Düzeltme kaydı olan
%79,2
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

24 kayıt
  • CVE-2001-1009
    42Planlayın

    Fetchmail (aka fetchmail-ssl) before 5.8.17 allows a remote malicious (1) IMAP server or (2) POP/POP3 server to overwrite arbitrary memory a

    KritikCVSS 10,0Kavram kanıtıEPSS %7

    fetchmail · fetchmail31 Ağu 2001

  • CVE-2001-0101
    41Planlayın

    Vulnerability in fetchmail 5.5.0-2 and earlier in the AUTHENTICATE GSSAPI command.

    KritikCVSS 10,0İstismar yokEPSS %2

    fetchmail · fetchmail12 Şub 2001

  • CVE-2001-0819
    32İzleyin

    A buffer overflow in Linux fetchmail before 5.8.6 allows remote attackers to execute arbitrary code via a large 'To:' field in an email head

    YüksekCVSS 7,5İstismar yokEPSS %6

    fetchmail · fetchmail6 Ara 2001

  • CVE-2006-5867
    32İzleyin

    fetchmail before 6.3.6-rc4 does not properly enforce TLS and may transmit cleartext passwords over unsecured links if certain circumstances

    YüksekCVSS 7,8İstismar yokEPSS %4

    fetchmail · fetchmail31 Ara 2006

  • CVE-2006-5974
    32İzleyin

    fetchmail 6.3.5 and 6.3.6 before 6.3.6-rc4, when refusing a message delivered via the mda option, allows remote attackers to cause a denial

    YüksekCVSS 7,8İstismar yokEPSS %4

    fetchmail · fetchmail31 Ara 2006

  • CVE-2005-4348
    32İzleyin

    fetchmail before 6.3.1 and before 6.2.5.5, when configured for multidrop mode, allows remote attackers to cause a denial of service (applica

    YüksekCVSS 7,8İstismar yokEPSS %4

    fetchmail · fetchmail20 Ara 2005

  • CVE-2002-1365
    31İzleyin

    Heap-based buffer overflow in Fetchmail 6.1.3 and earlier does not account for the "@" character when determining buffer lengths for local a

    YüksekCVSS 7,5İstismar yokEPSS %5

    fetchmail · fetchmail23 Ara 2002

  • CVE-2002-1174
    31İzleyin

    Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1

    YüksekCVSS 7,5İstismar yokEPSS %5

    fetchmail · fetchmail11 Eki 2002

  • CVE-2021-36386
    31İzleyin

    report_vbuild in report.c in Fetchmail before 6.4.20 sometimes omits initialization of the vsnprintf va_list argument, which might allow mai

    YüksekCVSS 7,5İstismar yokEPSS %3

    fetchmail · fetchmail30 Tem 2021

  • CVE-2010-0562
    28İzleyin

    The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, a

    OrtaCVSS 6,8İstismar yokEPSS %2

    fetchmail · fetchmail8 Şub 2010

  • CVE-2009-2666
    25İzleyin

    socket.c in fetchmail before 6.3.11 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an

    OrtaCVSS 6,4İstismar yokEPSS %2

    fetchmail · fetchmail7 Ağu 2009

  • CVE-2012-3482
    24İzleyin

    Fetchmail 5.0.8 through 6.3.21, when using NTLM authentication in debug mode, allows remote NTLM servers to (1) cause a denial of service (c

    OrtaCVSS 5,8İstismar yokEPSS %2

    fetchmail · fetchmail21 Ara 2012

  • CVE-2021-39272
    23İzleyin

    Fetchmail before 6.4.22 fails to enforce STARTTLS session encryption in some circumstances, such as a certain situation with IMAP and PREAUT

    OrtaCVSS 5,9İstismar yokEPSS %1

    fetchmail · fetchmail30 Ağu 2021

  • CVE-2005-2335
    22İzleyin

    Buffer overflow in the POP3 client in Fetchmail before 6.2.5.2 allows remote POP3 servers to cause a denial of service and possibly execute

    OrtaCVSS 5,0İstismar yokEPSS %6

    fetchmail · fetchmail27 Tem 2005

  • CVE-2006-0321
    21İzleyin

    fetchmail 6.3.0 and other versions before 6.3.2 allows remote attackers to cause a denial of service (crash) via crafted e-mail messages tha

    OrtaCVSS 5,0İstismar yokEPSS %4

    fetchmail · fetchmail23 Oca 2006

  • CVE-2011-1947
    21İzleyin

    fetchmail 5.9.9 through 6.3.19 does not properly limit the wait time after issuing a (1) STARTTLS or (2) STLS request, which allows remote s

    OrtaCVSS 5,0İstismar yokEPSS %3

    fetchmail · fetchmail2 Haz 2011

  • CVE-2003-0792
    21İzleyin

    Fetchmail 6.2.4 and earlier does not properly allocate memory for long lines, which allows remote attackers to cause a denial of service (cr

    OrtaCVSS 5,0İstismar yokEPSS %2

    fetchmail · fetchmail17 Kas 2003

  • CVE-2002-1175
    21İzleyin

    The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a mal

    OrtaCVSS 5,0İstismar yokEPSS %2

    fetchmail · fetchmail11 Eki 2002

  • CVE-2007-4565
    21İzleyin

    sink.c in fetchmail before 6.3.9 allows context-dependent attackers to cause a denial of service (NULL dereference and application crash) by

    OrtaCVSS 5,0İstismar yokEPSS %2

    fetchmail · fetchmail27 Ağu 2007

  • CVE-2002-0146
    20İzleyin

    fetchmail email client before 5.9.10 does not properly limit the maximum number of messages available, which allows a remote IMAP server to

    OrtaCVSS 5,0İstismar yokEPSS %1

    fetchmail · fetchmail25 Haz 2002

  • CVE-2008-2711
    18İzleyin

    fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persi

    OrtaCVSS 4,3İstismar yokEPSS %3

    fetchmail · fetchmail16 Haz 2008

  • CVE-2010-1167
    18İzleyin

    fetchmail 4.6.3 through 6.3.16, when debug mode is enabled, does not properly handle invalid characters in a multi-character locale, which a

    OrtaCVSS 4,3İstismar yokEPSS %2

    fetchmail · fetchmail7 May 2010

  • CVE-2005-3088
    8İzleyin

    fetchmailconf before 1.49 in fetchmail 6.2.0, 6.2.5 and 6.2.5.2 creates configuration files with insecure world-readable permissions, which

    DüşükCVSS 2,1İstismar yokEPSS %0

    fetchmail · fetchmail27 Eki 2005

  • CVE-2001-1378
    8İzleyin

    fetchmailconf in fetchmail before 5.7.4 allows local users to overwrite files of other users via a symlink attack on temporary files.

    DüşükCVSS 2,1İstismar yokEPSS %0

    fetchmail · fetchmail6 Eyl 2001