Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.901026
Kategorie:Buffer overflow
Titel:Dovecot Sieve Plugin Multiple Buffer Overflow Vulnerabilities
Zusammenfassung:Dovecot Sieve Plugin is prone to multiple buffer overflow vulnerabilities.
Beschreibung:Summary:
Dovecot Sieve Plugin is prone to multiple buffer overflow vulnerabilities.

Vulnerability Insight:
Multiple buffer overflow errors in the CMU libsieve when processing
malicious SIEVE scripts.

Vulnerability Impact:
Successful attack could allow malicious people to crash an affected
application or execute arbitrary code.

Affected Software/OS:
Dovecot versions 1.0 before 1.0.4 and 1.1 before 1.1.7.

Solution:
Apply the patch or upgrade to Dovecot version 1.1.4 or 1.1.7.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2009-3235
http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html
BugTraq ID: 36377
http://www.securityfocus.com/bid/36377
https://www.redhat.com/archives/fedora-package-announce/2009-September/msg00491.html
http://dovecot.org/list/dovecot-news/2009-September/000135.html
http://www.openwall.com/lists/oss-security/2009/09/14/3
http://www.osvdb.org/58103
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10515
http://secunia.com/advisories/36698
http://secunia.com/advisories/36713
http://secunia.com/advisories/36904
SuSE Security Announcement: SUSE-SR:2009:016 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-10/msg00001.html
SuSE Security Announcement: SUSE-SR:2009:018 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-11/msg00004.html
http://www.ubuntu.com/usn/USN-838-1
http://www.vupen.com/english/advisories/2009/2641
http://www.vupen.com/english/advisories/2009/3184
XForce ISS Database: cmu-sieve-dovecot-unspecified-bo(53248)
https://exchange.xforce.ibmcloud.com/vulnerabilities/53248
CopyrightCopyright (C) 2009 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.