CVE-2010-0161
published 2010-03-23CVE-2010-0161: The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI.cpp in Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 on Windows Vista, Windows…
PriorityP423medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
1.67%
74.2th percentile
The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI.cpp in Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 on Windows Vista, Windows Server 2008 R2, and Windows 7 allows remote SMTP, IMAP, and POP servers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via crafted data in a session that uses SSPI.
Affected
83 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | seamonkey | <= 1.1.18 | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Mozilla Thunderbird up to 1.5.0.10 POP Server nsAuthSSPI::Unwrap resource management (Bug 511806 / Nessus ID 45114)
vuldb·2026-05-03·CVSS 4.3
CVE-2010-0161 [MEDIUM] Mozilla Thunderbird up to 1.5.0.10 POP Server nsAuthSSPI::Unwrap resource management (Bug 511806 / Nessus ID 45114)
A vulnerability has been found in Mozilla Thunderbird up to 1.5.0.10 and classified as critical. The impacted element is the function nsAuthSSPI::Unwrap of the component POP Server. This manipulation causes improper resource management.
The identification of this vulnerability is CVE-2010-0161. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.
GHSA
GHSA-4fc7-9mv4-pp8w: The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI
ghsa_unreviewed·2022-05-02
CVE-2010-0161 [MEDIUM] GHSA-4fc7-9mv4-pp8w: The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI
The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI.cpp in Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 on Windows Vista, Windows Server 2008 R2, and Windows 7 allows remote SMTP, IMAP, and POP servers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via crafted data in a session that uses SSPI.
Red Hat
kernel: sys_move_pages infoleak
vendor_redhat·2010-02-05·CVSS 4.6
CVE-2010-0415 [MEDIUM] kernel: sys_move_pages infoleak
kernel: sys_move_pages infoleak
The do_pages_move function in mm/migrate.c in the Linux kernel before 2.6.33-rc7 does not validate node values, which allows local users to read arbitrary kernel memory locations, cause a denial of service (OOPS), and possibly have unspecified other impact by specifying a node that is not part of the kernel's node set.
Statement: This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 3 and 4, as they do not include support for sys_move_pages. It was only introduced in kernel version 2.6.18 onwards. This issue was addressed in Red Hat Enterprise Linux 5 and Red Hat Enterprise MRG via https://rhn.redhat.com/errata/RHSA-2010-0147.html and https://rhn.redhat.com/errata/RHSA-2010-0161.html.
Red Hat
kernel: tty->pgrp races
vendor_redhat·2009-12-17·CVSS 4.7
CVE-2009-4895 [MEDIUM] kernel: tty->pgrp races
kernel: tty->pgrp races
Race condition in the tty_fasync function in drivers/char/tty_io.c in the Linux kernel before 2.6.32.6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via unknown vectors, related to the put_tty_queue and __f_setown functions. NOTE: the vulnerability was addressed in a different way in 2.6.32.9.
Statement: This issue did not affect the version of Linux kernel as shipped with Red Hat
Enterprise Linux 3, 4 and 5. This issue was addressed in Red Hat Enterprise MRG via https://rhn.redhat.com/errata/RHSA-2010-0161.html.
Red Hat
kernel: untangle the do_mremap()
vendor_redhat·2009-12-07·CVSS 4.6
CVE-2010-0291 [MEDIUM] kernel: untangle the do_mremap()
kernel: untangle the do_mremap()
The Linux kernel before 2.6.32.4 allows local users to gain privileges or cause a denial of service (panic) by calling the (1) mmap or (2) mremap function, aka the "do_mremap() mess" or "mremap/mmap mess."
Statement: The risks associated with fixing this bug are greater than the important severity security risk. We therefore currently have no plans to fix this flaw in Red Hat Enterprise Linux 3 and 4. This issue was addressed in Red Hat Enterprise Linux 5 and Red Hat Enterprise MRG via https://rhn.redhat.com/errata/RHSA-2010-0504.html and https://rhn.redhat.com/errata/RHSA-2010-0161.html.
Suricata
GPL SMTP EXPN overflow attempt
suricata·2010-09-23
CVE-2002-1337 GPL SMTP EXPN overflow attempt
GPL SMTP EXPN overflow attempt
Rule: alert tcp $EXTERNAL_NET any -> $SMTP_SERVERS 25 (msg:"GPL SMTP EXPN overflow attempt"; flow:established,to_server; content:"EXPN"; nocase; isdataat:255,relative; content:!"|0a|"; within:255; pcre:"/^EXPN[^\n]{255}/smi"; reference:bugtraq,6991; reference:bugtraq,7230; reference:cve,2002-1337; reference:cve,2003-0161; classtype:attempted-admin; sid:2102259; rev:10; metadata:created_at 2010_09_23, cve CVE_2002_1337, confidence Medium, signature_severity Major, updated_at 2024_03_08;)
No public exploits indexed.
No writeups or analysis indexed.
http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/39001http://www.mozilla.org/security/announce/2010/mfsa2010-07.htmlhttp://www.securityfocus.com/bid/38831http://www.vupen.com/english/advisories/2010/0648https://bugzilla.mozilla.org/show_bug.cgi?id=511806https://exchange.xforce.ibmcloud.com/vulnerabilities/56992https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14159http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/39001http://www.mozilla.org/security/announce/2010/mfsa2010-07.htmlhttp://www.securityfocus.com/bid/38831http://www.vupen.com/english/advisories/2010/0648https://bugzilla.mozilla.org/show_bug.cgi?id=511806https://exchange.xforce.ibmcloud.com/vulnerabilities/56992https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14159
2010-03-23
Published