cbcvebase.

Debian Inn2 vulnerabilities

3 known vulnerabilities affecting debian/inn2.

Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1LOW1

Vulnerabilities

Page 1 of 1
CVE-2001-1442P4MEDIUMCVSS 4.6PoCfixed in inn2 2.3.3+20020922-1 (bookworm)2001
CVE-2001-1442 [MEDIUM] CVE-2001-1442: inn2 - Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local ... Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privileges via a long -c command line argument. Scope: local bookworm: resolved (fixed in 2.3.3+20020922-1) bullseye: resolved (fixed in 2.3.3+20020922-1) forky: resolved (fixed in 2.3.3+20020922-1) sid: resolved (fixed in 2.3.3+20020922-1) trixie: resolved
debian
CVE-2012-3523P3LOWCVSS 6.8fixed in inn2 2.5.3-1 (bookworm)2012
CVE-2012-3523 [MEDIUM] CVE-2012-3523: inn - The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restr... The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411. Scope: local bookworm: resolved
debian
CVE-2004-0045P4HIGHCVSS 7.5fixed in inn2 2.4.1+20040820 (bookworm)2004
CVE-2004-0045 [HIGH] CVE-2004-0045: inn2 - Buffer overflow in the ARTpost function in art.c in the control message handling... Buffer overflow in the ARTpost function in art.c in the control message handling code for INN 2.4.0 may allow remote attackers to execute arbitrary code. Scope: local bookworm: resolved (fixed in 2.4.1+20040820) bullseye: resolved (fixed in 2.4.1+20040820) forky: resolved (fixed in 2.4.1+20040820) sid: resolved (fixed in 2.4.1+20040820) trixie: resolved (fixed in 2.4.1+2
debian
Debian Inn2 vulnerabilities | cvebase