Mailman Multiple Input Validation Vulnerabilities
BID:20021
CVE-2006-3636 | CVE-2006-4624 |Info
Mailman Multiple Input Validation Vulnerabilities
| Bugtraq ID: | 20021 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-3636 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 14 2006 12:00AM |
| Updated: | Nov 15 2007 08:55PM |
| Credit: | Moritz Naumann is credited with the discovery of this vulnerability. |
| Vulnerable: |
Ubuntu Ubuntu Linux 5.10 sparc Ubuntu Ubuntu Linux 5.10 powerpc Ubuntu Ubuntu Linux 5.10 i386 Ubuntu Ubuntu Linux 5.10 amd64 Ubuntu Ubuntu Linux 5.0 4 powerpc Ubuntu Ubuntu Linux 5.0 4 i386 Ubuntu Ubuntu Linux 5.0 4 amd64 Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 Redhat Fedora Core5 Redhat Enterprise Linux WS 4 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux AS 4 Redhat Desktop 4.0 Free Software Foundation Mailman 2.1.8 Free Software Foundation Mailman 2.1.7 Free Software Foundation Mailman 2.1.6 Free Software Foundation Mailman 2.1.5 Free Software Foundation Mailman 2.1.4 Free Software Foundation Mailman 2.1.3 Free Software Foundation Mailman 2.1.2 Free Software Foundation Mailman 2.1.1 Free Software Foundation Mailman 2.1 |
| Not Vulnerable: |
Free Software Foundation Mailman 2.1.9 |
Discussion
Mailman Multiple Input Validation Vulnerabilities
Mailman is prone to multiple input-validation vulnerabilities because the application fails to sanitize user-input. These issues include multiple cross-site scripting vulnerabilities and a CRLF-injection vulnerability.
A successful exploit of these issues could allow an attacker to steal cookie-based authentication credentials, add additional content to the log file, possibly hide current attacks, or launch phishing-style attacks; other attacks may also be possible.
Versions between 2.1.0 and 2.1.8 are vulnerable to this issue; other versions prior to 2.1.0 may also be affected.
Mailman is prone to multiple input-validation vulnerabilities because the application fails to sanitize user-input. These issues include multiple cross-site scripting vulnerabilities and a CRLF-injection vulnerability.
A successful exploit of these issues could allow an attacker to steal cookie-based authentication credentials, add additional content to the log file, possibly hide current attacks, or launch phishing-style attacks; other attacks may also be possible.
Versions between 2.1.0 and 2.1.8 are vulnerable to this issue; other versions prior to 2.1.0 may also be affected.
Exploit / POC
Mailman Multiple Input Validation Vulnerabilities
An attacker can exploit this issue via a web client.
The following proof-of-concept URIs are available:
An attacker can exploit this issue via a web client.
The following proof-of-concept URIs are available:
Solution / Fix
Mailman Multiple Input Validation Vulnerabilities
Solution:
The vendor has released version 2.1.9 to address these issues. Please see the references for more information.
Solution:
The vendor has released version 2.1.9 to address these issues. Please see the references for more information.
References
Mailman Multiple Input Validation Vulnerabilities
References:
References:
- Mailman Homepage (GNU)
- Mailman 2.1.8 Multiple Security Issues (Moritz Naumann )
- RHSA-2007:0779 Low: mailman security and bug fix update (Red Hat)