PT-2005-5034 · Fetchmail+1 · Fetchmail+1

Daniel Drake

·

Published

2005-12-21

·

Updated

2018-10-19

·

CVE-2005-4348

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions fetchmail versions prior to 6.3.1 fetchmail versions prior to 6.2.5.5
Description The issue allows remote attackers to cause a denial of service, resulting in an application crash, by sending messages without headers from upstream mail servers when fetchmail is configured for multidrop mode.
Recommendations For versions prior to 6.3.1, update to version 6.3.1 or later. For versions prior to 6.2.5.5, update to version 6.2.5.5 or later.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2005-4348
DSA-939-1
RHSA-2007:0018
RHSA-2007_0018

Affected Products

Red Hat
Fetchmail