[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*


oval:org.secpod.oval:def:700506
postfix: High-performance mail transport agent An attacker could send crafted input to Postfix and cause it to reveal confidential information.

oval:org.secpod.oval:def:201460
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , and TLS. It was discovered that Postfix did not flush the received SMTP commands buffer after switching to TLS encryption for an SMTP session. A man-in-the-middle attacker could use this flaw to inject SMTP commands into a victim"s ses ...

oval:org.secpod.oval:def:500040
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , and TLS. It was discovered that Postfix did not flush the received SMTP commands buffer after switching to TLS encryption for an SMTP session. A man-in-the-middle attacker could use this flaw to inject SMTP commands into a victim"s ses ...

oval:org.secpod.oval:def:200638
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , and TLS. It was discovered that Postfix did not flush the received SMTP commands buffer after switching to TLS encryption for an SMTP session. A man-in-the-middle attacker could use this flaw to inject SMTP commands into a victim"s ses ...

oval:org.secpod.oval:def:200637
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , and TLS. It was discovered that Postfix did not flush the received SMTP commands buffer after switching to TLS encryption for an SMTP session. A man-in-the-middle attacker could use this flaw to inject SMTP commands into a victim"s ses ...

oval:org.secpod.oval:def:200547
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , and TLS. It was discovered that Postfix did not flush the received SMTP commands buffer after switching to TLS encryption for an SMTP session. A man-in-the-middle attacker could use this flaw to inject SMTP commands into a victim"s ses ...

oval:org.secpod.oval:def:302964
A security issue was identified and fixed in ISC INN: The STARTTLS implementation in INN's NNTP server for readers, nnrpd, before 2.5.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessions by sending a cleartext command th ...

oval:org.secpod.oval:def:103092
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , TLS

oval:org.secpod.oval:def:103177
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , TLS

oval:org.secpod.oval:def:600689
Several vulnerabilities were discovered in ProFTPD, an FTP server: ProFTPD incorrectly uses data from an unencrypted input buffer after encryption has been enabled with STARTTLS, an issue similar to CVE-2011-0411. CVE-2011-4130 ProFTPD uses a response pool after freeing it under exceptional conditio ...

oval:org.secpod.oval:def:500275
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , and TLS. It was discovered that Postfix did not flush the received SMTP commands buffer after switching to TLS encryption for an SMTP session. A man-in-the-middle attacker could use this flaw to inject SMTP commands into a victim"s ses ...

oval:org.secpod.oval:def:102663
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , TLS

oval:org.secpod.oval:def:102659
Postfix is a Mail Transport Agent , supporting LDAP, SMTP AUTH , TLS

oval:org.secpod.oval:def:1503441
Updated postfix packages that fix one security issue are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having moderate security impact. A Common Vulnerability Scoring System base score, which gives a detailed severity rating, is available ...

oval:org.secpod.oval:def:3136
The host is installed with Apple Mac OS X 10.6.8 and is prone to multiple STARTTLS command execution vulnerability. The flaws are present in the application, which fails to clearing the command queue after processing a STARTTLS command. Successful exploitation could allow attackers to obtain sensiti ...

oval:org.secpod.oval:def:600524
Several vulnerabilities were discovered in Postfix, a mail transfer agent. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-2939 The postinst script grants the postfix user write access to /var/spool/postfix/pid, which might allow local users to conduct sy ...

oval:org.secpod.oval:def:101342
Pure-FTPd is a fast, production-quality, standard-comformant FTP server, based upon Troll-FTPd. Unlike other popular FTP servers, it has no known security flaw, it is really trivial to set up and it is especially designed for modern Linux and FreeBSD kernels . Features include PAM support, IPv6, ch ...

CPE    42
cpe:/a:postfix:postfix:2.6.0
cpe:/a:postfix:postfix:2.4.10
cpe:/a:postfix:postfix:2.4.2
cpe:/a:postfix:postfix:2.6.1
...
CWE    1
CWE-264
*CVE
CVE-2011-0411

© SecPod Technologies