CVE-2006-5973
published 2006-11-20CVE-2006-5973: Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes,"…
PriorityP418medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.65%
84.0th percentile
Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file.
Affected
62 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | dovecot | < dovecot 1.0.rc15-1 (bookworm) | dovecot 1.0.rc15-1 (bookworm) |
| dovecot | dovecot | >= 0 < 1.0.rc15-1 | 1.0.rc15-1 |
| dovecot | dovecot | >= 0 < 1.0.rc15-1 | 1.0.rc15-1 |
| dovecot | dovecot | >= 0 < 1.0.rc15-1 | 1.0.rc15-1 |
| dovecot | dovecot | >= 0 < 1.0.rc15-1 | 1.0.rc15-1 |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
| timo_sirainen | dovecot | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2xmp-j7gv-wmqh: Off-by-one buffer overflow in Dovecot 1
ghsa_unreviewed·2022-05-01
CVE-2006-5973 [MEDIUM] GHSA-2xmp-j7gv-wmqh: Off-by-one buffer overflow in Dovecot 1
Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file.
OSV
CVE-2006-5973: Off-by-one buffer overflow in Dovecot 1
osv·2006-11-20·CVSS 5.0
CVE-2006-5973 [MEDIUM] CVE-2006-5973: Off-by-one buffer overflow in Dovecot 1
Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file.
Ubuntu
Dovecot vulnerability
vendor_ubuntu·2006-11-28
CVE-2006-5973 Dovecot vulnerability
Title: Dovecot vulnerability
Summary: Dovecot vulnerability
Dovecot was discovered to have an error when handling its index cache
files. This error could be exploited by authenticated POP and IMAP
users to cause a crash of the Dovecot server, or possibly to execute
arbitrary code. Only servers using the non-default option
"mmap_disable=yes" were vulnerable.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Debian
CVE-2006-5973: dovecot - Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly o...
vendor_debian·2006·CVSS 5.0
CVE-2006-5973 [MEDIUM] CVE-2006-5973: dovecot - Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly o...
Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file.
Scope: local
bookworm: resolved (fixed in 1.0.rc15-1)
bullseye: resolved (fixed in 1.0.rc15-1)
forky: resolved (fixed in 1.0.rc15-1)
sid: resolved (fixed in 1.0.rc15-1)
trixie: resolved (fixed in 1.0.rc15-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://dovecot.org/list/dovecot-news/2006-November/000023.htmlhttp://dovecot.org/pipermail/dovecot-news/2006-November/000024.htmlhttp://secunia.com/advisories/23007http://secunia.com/advisories/23150http://secunia.com/advisories/23172http://secunia.com/advisories/23213http://securitytracker.com/id?1017288http://www.novell.com/linux/security/advisories/2006_73_mono.htmlhttp://www.securityfocus.com/archive/1/452081/100/0/threadedhttp://www.securityfocus.com/bid/21183/infohttp://www.ubuntu.com/usn/usn-387-1http://www.vupen.com/english/advisories/2006/4614https://exchange.xforce.ibmcloud.com/vulnerabilities/30433https://issues.rpath.com/browse/RPL-802http://dovecot.org/list/dovecot-news/2006-November/000023.htmlhttp://dovecot.org/pipermail/dovecot-news/2006-November/000024.htmlhttp://secunia.com/advisories/23007http://secunia.com/advisories/23150http://secunia.com/advisories/23172http://secunia.com/advisories/23213http://securitytracker.com/id?1017288http://www.novell.com/linux/security/advisories/2006_73_mono.htmlhttp://www.securityfocus.com/archive/1/452081/100/0/threadedhttp://www.securityfocus.com/bid/21183/infohttp://www.ubuntu.com/usn/usn-387-1http://www.vupen.com/english/advisories/2006/4614https://exchange.xforce.ibmcloud.com/vulnerabilities/30433https://issues.rpath.com/browse/RPL-802
2006-11-20
Published