PT-2025-40622 · Fetchmail+4 · Fetchmail+4

Matthias Andree

·

Published

2025-10-04

·

Updated

2026-03-26

·

CVE-2025-61962

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions fetchmail versions prior to 6.5.6
Description The SMTP client in fetchmail can experience a crash during authentication when it receives a 334 status code in a malformed context.
Recommendations Update to fetchmail version 6.5.6 or later.

Fix

Weakness Enumeration

Related Identifiers

AZL-68127
AZL-68183
CVE-2025-61962
MGASA-2025-0238
OESA-2025-2423
OESA-2025-2424
OESA-2025-2425
OESA-2025-2426
OESA-2025-2427
OESA-2025-2428
OPENSUSE-SU-2025:15653-1
OPENSUSE-SU-2026:20432-1
SUSE-SU-2025:3845-1
SUSE-SU-2025:3966-1
SUSE-SU-2025_3845-1
SUSE-SU-2025_3966-1
SUSE-SU-2026:20935-1
USN-7838-1

Affected Products

Debian
Linuxmint
Suse
Ubuntu
Fetchmail