CVE-2005-4153

9 documents6 sources
Severity
7.8HIGH
EPSS
8.7%
top 7.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 11
Latest updateMay 3

Description

Mailman 2.1.4 through 2.1.6 allows remote attackers to cause a denial of service via a message that causes the server to "fail with an Overflow on bad date data in a processed message," a different vulnerability than CVE-2005-3573.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

NVDgnu/mailman2.1.4, 2.1.5, 2.1.6+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9hr9-wg7q-ffxj: Mailman 22022-05-03
CVEList
CVE-2005-4153: Mailman 22005-12-11

📋Vendor Advisories

2
Ubuntu
mailman vulnerabilities2006-01-16
Red Hat
security flaw2005-09-01

💬Community

4
Bugzilla
CVE-2005-4153 security flaw2018-08-16
Bugzilla
CVE-2006-0052 Mailman DoS, CVE-2006-1712 Mailman cross site scripting bug and CVE-2005-3573 Mailman Denial of Service (CVE-2005-4153); also CAN-2004-1177 Cross-site scripting (XSS) vulnerability2006-06-02
Bugzilla
CVE-2005-4153 Mailman DOS2005-12-19
Bugzilla
CVE-2005-3573 Mailman Denial of Service (CVE-2005-4153)2005-11-14
CVE-2005-4153 (HIGH CVSS 7.8) | Mailman 2.1.4 through 2.1.6 allows | cvebase.io