[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2006-1173Date: (C)2006-06-07   (M)2023-12-22


Sendmail before 8.13.7 allows remote attackers to cause a denial of service via deeply nested, malformed multipart MIME messages that exhaust the stack during the recursive mime8to7 function for performing 8-bit to 7-bit conversion, which prevents Sendmail from delivering queued messages and might lead to disk consumption by core dump files.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 5.0
Exploit Score: 10.0
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: NONE
Integrity: NONE
Availability: PARTIAL
  
Reference:
SECTRACK-1016295
SUNALERT-102460
SECUNIA-15779
BID-18433
20060601-01-P
20060602-01-U
http://www.securityfocus.com/archive/1/437928/100/0/threaded
http://www.securityfocus.com/archive/1/438241/100/0/threaded
http://www.securityfocus.com/archive/1/438330/100/0/threaded
http://www.securityfocus.com/archive/1/440744/100/0/threaded
SECUNIA-20473
SECUNIA-20641
SECUNIA-20650
SECUNIA-20651
SECUNIA-20654
SECUNIA-20673
SECUNIA-20675
SECUNIA-20679
SECUNIA-20683
SECUNIA-20684
SECUNIA-20694
SECUNIA-20726
SECUNIA-20782
SECUNIA-21042
SECUNIA-21160
SECUNIA-21327
SECUNIA-21612
SECUNIA-21647
OSVDB-26197
ADV-2006-2189
ADV-2006-2351
ADV-2006-2388
ADV-2006-2389
ADV-2006-2390
ADV-2006-2798
ADV-2006-3135
DSA-1155
FreeBSD-SA-06:17.sendmail
GLSA-200606-19
HPSBTU02116
HPSBUX02124
IY85415
IY85930
MDKSA-2006:104
RHSA-2006:0515
SSA:2006-166-01
SUSE-SA:2006:032
VU#146718
http://www.openbsd.org/errata38.html#sendmail2
http://support.avaya.com/elmodocs2/security/ASA-2006-148.htm
http://www.f-secure.com/security/fsc-2006-5.shtml
http://www.fortinet.com/FortiGuardCenter/advisory/FG-2006-18.html
http://www.sendmail.com/security/advisories/SA-200605-01.txt.asc
https://issues.rpath.com/browse/RPL-526
oval:org.mitre.oval:def:11253
sendmail-multipart-mime-dos(27128)

CPE    41
cpe:/a:sendmail:sendmail:8.12:beta12
cpe:/a:sendmail:sendmail:8.12:beta10
cpe:/a:sendmail:sendmail:8.10.1
cpe:/a:sendmail:sendmail:8.11.0
...
CWE    1
CWE-399

© SecPod Technologies