[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2012-132 --- fetchmail

ID: oval:org.secpod.oval:def:1601323Date: (C)2020-11-27   (M)2022-11-29
Class: PATCHFamily: unix




Fetchmail 5.0.8 through 6.3.21, when using NTLM authentication in debug mode, allows remote NTLM servers to cause a denial of service via a crafted NTLM response that triggers an out-of-bounds read in the base64 decoder, or obtain sensitive information from memory via an NTLM Type 2 message with a crafted Target Name structure, which triggers an out-of-bounds read.

Platform:
Amazon Linux AMI
Product:
fetchmail
Reference:
ALAS-2012-132
CVE-2012-3482
CVE    1
CVE-2012-3482
CPE    94
cpe:/a:fetchmail:fetchmail:6.1.0
cpe:/a:fetchmail:fetchmail:6.1.3
cpe:/a:fetchmail:fetchmail:6.2.9:rc10
cpe:/a:fetchmail:fetchmail:5.3.3
...

© SecPod Technologies