Debian Sympa vulnerabilities
15 known vulnerabilities affecting debian/sympa.
Total CVEs
15
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH4MEDIUM5LOW4UNKNOWN1
Vulnerabilities
Page 1 of 1
CVE-2024-55919UNKNOWNfixed in sympa 6.2.60~dfsg-4+deb11u1 (bullseye)2024
CVE-2024-55919 CVE-2024-55919: sympa
bookworm: open
bullseye: resolved (fixed in 6.2.60~dfsg-4+deb11u1)
forky: resolved (fixed in 6.2.74~dfsg-1)
sid: resolved (fixed in 6.2.74~dfsg-1)
trixie: resolved (fixed in 6.2.74~dfsg-1)
debian
CVE-2021-46900HIGHCVSS 7.5fixed in sympa 6.2.66~dfsg-1 (bookworm)2021
CVE-2021-46900 [HIGH] CVE-2021-46900: sympa - Sympa before 6.2.62 relies on a cookie parameter for certain security objectives...
Sympa before 6.2.62 relies on a cookie parameter for certain security objectives, but does not ensure that this parameter exists and has an unpredictable value. Specifically, the cookie parameter is both a salt for stored passwords and an XSS protection mechanism.
Scope: local
bookworm: resolved (fixed in 6.2.66~dfsg-1)
bullseye: open
forky: resolved (fixed in 6.2.66~
debian
CVE-2020-10936HIGHCVSS 7.8fixed in sympa 6.2.40~dfsg-5 (bookworm)2020
CVE-2020-10936 [HIGH] CVE-2020-10936: sympa - Sympa before 6.2.56 allows privilege escalation.
Sympa before 6.2.56 allows privilege escalation.
Scope: local
bookworm: resolved (fixed in 6.2.40~dfsg-5)
bullseye: resolved (fixed in 6.2.40~dfsg-5)
forky: resolved (fixed in 6.2.40~dfsg-5)
sid: resolved (fixed in 6.2.40~dfsg-5)
trixie: resolved (fixed in 6.2.40~dfsg-5)
debian
CVE-2020-26880HIGHCVSS 7.8fixed in sympa 6.2.60~dfsg-2 (bookworm)2020
CVE-2020-26880 [HIGH] CVE-2020-26880: sympa - Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user ...
Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user account to full root access by modifying the sympa.conf configuration file (which is owned by sympa) and parsing it through the setuid sympa_newaliases-wrapper executable.
Scope: local
bookworm: resolved (fixed in 6.2.60~dfsg-2)
bullseye: resolved (fixed in 6.2.60~dfsg-2)
forky: resolved (
debian
CVE-2020-26932MEDIUMCVSS 4.3fixed in sympa 6.2.40~dfsg-7 (bookworm)2020
CVE-2020-26932 [MEDIUM] CVE-2020-26932: sympa - debian/sympa.postinst for the Debian Sympa package before 6.2.40~dfsg-7 uses mod...
debian/sympa.postinst for the Debian Sympa package before 6.2.40~dfsg-7 uses mode 4755 for sympa_newaliases-wrapper, whereas the intended permissions are mode 4750 (for access by the sympa group)
Scope: local
bookworm: resolved (fixed in 6.2.40~dfsg-7)
bullseye: resolved (fixed in 6.2.40~dfsg-7)
forky: resolved (fixed in 6.2.40~dfsg-7)
sid: resolved (fixed in 6.2.40
debian
CVE-2020-9369LOWCVSS 7.5fixed in sympa 6.2.40~dfsg-4 (bookworm)2020
CVE-2020-9369 [HIGH] CVE-2020-9369: sympa - Sympa 6.2.38 through 6.2.52 allows remote attackers to cause a denial of service...
Sympa 6.2.38 through 6.2.52 allows remote attackers to cause a denial of service (disk consumption from temporary files, and a flood of notifications to listmasters) via a series of requests with malformed parameters.
Scope: local
bookworm: resolved (fixed in 6.2.40~dfsg-4)
bullseye: resolved (fixed in 6.2.40~dfsg-4)
forky: resolved (fixed in 6.2.40~dfsg-4)
sid: resolve
debian
CVE-2020-29668LOWCVSS 3.7fixed in sympa 6.2.58~dfsg-2 (bookworm)2020
CVE-2020-29668 [LOW] CVE-2020-29668: sympa - Sympa before 6.2.59b.2 allows remote attackers to obtain full SOAP API access by...
Sympa before 6.2.59b.2 allows remote attackers to obtain full SOAP API access by sending any arbitrary string (except one from an expired cookie) as the cookie value to authenticateAndRun.
Scope: local
bookworm: resolved (fixed in 6.2.58~dfsg-2)
bullseye: resolved (fixed in 6.2.58~dfsg-2)
forky: resolved (fixed in 6.2.58~dfsg-2)
sid: resolved (fixed in 6.2.58~dfsg-2)
t
debian
CVE-2018-1000550CRITICALCVSS 9.8fixed in sympa 6.2.32~dfsg-1 (bookworm)2018
CVE-2018-1000550 [CRITICAL] CVE-2018-1000550: sympa - The Sympa Community Sympa version prior to version 6.2.32 contains a Directory T...
The Sympa Community Sympa version prior to version 6.2.32 contains a Directory Traversal vulnerability in wwsympa.fcgi template editing function that can result in Possibility to create or modify files on the server filesystem. This attack appear to be exploitable via HTTP GET/POST request. This vulnerability appears to have been fixed in 6.2.32.
Scope: local
debian
CVE-2018-1000671MEDIUMCVSS 6.1PoCfixed in sympa 6.2.36~dfsg-1 (bookworm)2018
CVE-2018-1000671 [MEDIUM] CVE-2018-1000671: sympa - sympa version 6.2.16 and later contains a CWE-601: URL Redirection to Untrusted ...
sympa version 6.2.16 and later contains a CWE-601: URL Redirection to Untrusted Site ('Open Redirect') vulnerability in The "referer" parameter of the wwsympa.fcgi login action. that can result in Open redirection and reflected XSS via data URIs. This attack appear to be exploitable via Victim's browser must follow a URL supplied by the attacker. This vulnerabil
debian
CVE-2015-1306MEDIUMCVSS 5.0fixed in sympa 6.1.23~dfsg-2 (bookworm)2015
CVE-2015-1306 [MEDIUM] CVE-2015-1306: sympa - The newsletter posting area in the web interface in Sympa 6.0.x before 6.0.10 an...
The newsletter posting area in the web interface in Sympa 6.0.x before 6.0.10 and 6.1.x before 6.1.24 allows remote attackers to read arbitrary files via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 6.1.23~dfsg-2)
bullseye: resolved (fixed in 6.1.23~dfsg-2)
forky: resolved (fixed in 6.1.23~dfsg-2)
sid: resolved (fixed in 6.1.23~dfsg-2)
trixie: resolv
debian
CVE-2012-2352HIGHCVSS 7.5fixed in sympa 6.1.11~dfsg-1 (bookworm)2012
CVE-2012-2352 [HIGH] CVE-2012-2352: sympa - The archive management (arc_manage) page in wwsympa/wwsympa.fcgi.in in Sympa bef...
The archive management (arc_manage) page in wwsympa/wwsympa.fcgi.in in Sympa before 6.1.11 does not check permissions, which allows remote attackers to list, read, and delete arbitrary list archives via vectors related to the (1) do_arc_manage, (2) do_arc_download, or (3) do_arc_delete functions.
Scope: local
bookworm: resolved (fixed in 6.1.11~dfsg-1)
bullseye: resolve
debian
CVE-2008-1648MEDIUMCVSS 5.0fixed in sympa 5.3.4-4 (bookworm)2008
CVE-2008-1648 [MEDIUM] CVE-2008-1648: sympa - Sympa before 5.4 allows remote attackers to cause a denial of service (daemon cr...
Sympa before 5.4 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message with a malformed value of the Content-Type header and unspecified other headers. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 5.3.4-4)
bullseye: resolved (fixed in 5.3.4-4)
forky: resolved (fixed
debian
CVE-2008-4476LOWCVSS 6.9fixed in sympa 5.3.4-5.1 (bookworm)2008
CVE-2008-4476 [MEDIUM] CVE-2008-4476: sympa - sympa.pl in sympa 5.3.4 allows local users to overwrite arbitrary files via a sy...
sympa.pl in sympa 5.3.4 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/sympa_aliases.$$ temporary file. NOTE: wwsympa.fcgi was also reported, but the issue occurred in a dead function, so it is not a vulnerability.
Scope: local
bookworm: resolved (fixed in 5.3.4-5.1)
bullseye: resolved (fixed in 5.3.4-5.1)
forky: resolved (fixed in 5.
debian
CVE-2005-0073MEDIUMCVSS 4.6v3.3.32005-05-02
CVE-2005-0073 [MEDIUM] CVE-2005-0073: Buffer overflow in queue.c in a support script for sympa 3.3.3, when running setuid, allows local us
Buffer overflow in queue.c in a support script for sympa 3.3.3, when running setuid, allows local users to execute arbitrary code.
nvddebian
CVE-2004-1735LOWCVSS 4.3PoCfixed in sympa 4.1.5-4 (bookworm)2004
CVE-2004-1735 [MEDIUM] CVE-2004-1735: sympa - Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1....
Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1.x and earlier allows remote authenticated users to inject arbitrary web script or HTML via the description field.
Scope: local
bookworm: resolved (fixed in 4.1.5-4)
bullseye: resolved (fixed in 4.1.5-4)
forky: resolved (fixed in 4.1.5-4)
sid: resolved (fixed in 4.1.5-4)
trixie: resolved (f
debian