Debian Inn2 vulnerabilities
3 known vulnerabilities affecting debian/inn2.
Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1LOW1
Vulnerabilities
Page 1 of 1
CVE-2001-1442P4MEDIUMCVSS 4.6PoCfixed in inn2 2.3.3+20020922-1 (bookworm)2001
CVE-2001-1442 [MEDIUM] CVE-2001-1442: inn2 - Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local ...
Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privileges via a long -c command line argument.
Scope: local
bookworm: resolved (fixed in 2.3.3+20020922-1)
bullseye: resolved (fixed in 2.3.3+20020922-1)
forky: resolved (fixed in 2.3.3+20020922-1)
sid: resolved (fixed in 2.3.3+20020922-1)
trixie: resolved
debian
CVE-2012-3523P3LOWCVSS 6.8fixed in inn2 2.5.3-1 (bookworm)2012
CVE-2012-3523 [MEDIUM] CVE-2012-3523: inn - The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restr...
The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.
Scope: local
bookworm: resolved
debian
CVE-2004-0045P4HIGHCVSS 7.5fixed in inn2 2.4.1+20040820 (bookworm)2004
CVE-2004-0045 [HIGH] CVE-2004-0045: inn2 - Buffer overflow in the ARTpost function in art.c in the control message handling...
Buffer overflow in the ARTpost function in art.c in the control message handling code for INN 2.4.0 may allow remote attackers to execute arbitrary code.
Scope: local
bookworm: resolved (fixed in 2.4.1+20040820)
bullseye: resolved (fixed in 2.4.1+20040820)
forky: resolved (fixed in 2.4.1+20040820)
sid: resolved (fixed in 2.4.1+20040820)
trixie: resolved (fixed in 2.4.1+2
debian