CVE-2006-0321
Summary
| CVE | CVE-2006-0321 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-01-24 00:03:00 UTC |
| Updated | 2018-10-19 15:44:00 UTC |
| Description | fetchmail 6.3.0 and other versions before 6.3.2 allows remote attackers to cause a denial of service (crash) via crafted e-mail messages that cause a free of an invalid pointer when fetchmail bounces the message to the originator or local postmaster. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Fetchmail Bounced Message Denial of Service Vulnerability - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| SecurityFocus |
BUGTRAQ |
www.securityfocus.com |
|
| Mac OS X Security Update Fixes Multiple Vulnerabilities - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| Webmail - OVH |
VUPEN |
www.vupen.com |
|
| Fetchmail - Kostenloser Open Source Mail Daemon |
CONFIRM |
fetchmail.berlios.de |
Patch, Vendor Advisory |
| SecurityTracker.com Archives - Fetchmail Invalid free() on Message Bounce Lets Remote Users Deny Service |
SECTRACK |
securitytracker.com |
|
| Webmail - OVH |
VUPEN |
www.vupen.com |
|
| #348747 - fetchmail: segfault when submitting dsn to local postmaster - Debian Bug report logs |
CONFIRM |
bugs.debian.org |
|
| APPLE-SA-2006-08-01 Security Update 2006-004 |
APPLE |
lists.apple.com |
|
| Apple Mac OS X Multiple Security Vulnerabilities |
BID |
www.securityfocus.com |
|
| 500 Internal Server Error |
CONFIRM |
developer.berlios.de |
|
| IBM X-Force Exchange |
XF |
exchange.xforce.ibmcloud.com |
|
| The Slackware Linux Project: Slackware Security Advisories |
SLACKWARE |
slackware.com |
|
| Fetchmail Bounced Message Denial Of Service Vulnerability |
BID |
www.securityfocus.com |
|
| 22691 |
OSVDB |
www.osvdb.org |
|
| US-CERT Technical Cyber Security Alert TA06-214A -- Apple Mac Products Affected by Multiple Vulnerabilities |
CERT |
www.us-cert.gov |
US Government Resource |
| Slackware update for fetchmail - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
Vendor Comments And Credit
| Organization | Published | Contributor | Statement |
|---|
| Red Hat | 2006-08-30 | Mark J Cox | This issue did not affect the versions of Fetchmail as distributed with Red Hat Enterprise Linux 2.1, 3, or 4. |
There are currently no legacy QID mappings associated with this CVE.