Lucene search

K
cveMitreCVE-2002-1174
HistoryOct 11, 2002 - 4:00 a.m.

CVE-2002-1174

2002-10-1104:00:00
CWE-119
mitre
web.nvd.nist.gov
33
cve-2002-1174
fetchmail
buffer overflow
remote attackers
denial of service
arbitrary code
security vulnerability

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.118

Percentile

95.3%

Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) long headers that are not properly processed by the readheaders function, or (2) via long Received: headers, which are not properly parsed by the parse_received function.

Affected configurations

Nvd
Node
fetchmailfetchmailRange6.0.0
OR
fetchmailfetchmailMatch4.5.1
OR
fetchmailfetchmailMatch4.5.2
OR
fetchmailfetchmailMatch4.5.3
OR
fetchmailfetchmailMatch4.5.4
OR
fetchmailfetchmailMatch4.5.5
OR
fetchmailfetchmailMatch4.5.6
OR
fetchmailfetchmailMatch4.5.7
OR
fetchmailfetchmailMatch4.5.8
OR
fetchmailfetchmailMatch4.6.0
OR
fetchmailfetchmailMatch4.6.1
OR
fetchmailfetchmailMatch4.6.2
OR
fetchmailfetchmailMatch4.6.3
OR
fetchmailfetchmailMatch4.6.4
OR
fetchmailfetchmailMatch4.6.5
OR
fetchmailfetchmailMatch4.6.6
OR
fetchmailfetchmailMatch4.6.7
OR
fetchmailfetchmailMatch4.6.8
OR
fetchmailfetchmailMatch4.6.9
OR
fetchmailfetchmailMatch4.7.0
OR
fetchmailfetchmailMatch4.7.1
OR
fetchmailfetchmailMatch4.7.2
OR
fetchmailfetchmailMatch4.7.3
OR
fetchmailfetchmailMatch4.7.4
OR
fetchmailfetchmailMatch4.7.5
OR
fetchmailfetchmailMatch4.7.6
OR
fetchmailfetchmailMatch4.7.7
OR
fetchmailfetchmailMatch5.0.0
OR
fetchmailfetchmailMatch5.0.1
OR
fetchmailfetchmailMatch5.0.2
OR
fetchmailfetchmailMatch5.0.3
OR
fetchmailfetchmailMatch5.0.4
OR
fetchmailfetchmailMatch5.0.5
OR
fetchmailfetchmailMatch5.0.6
OR
fetchmailfetchmailMatch5.0.7
OR
fetchmailfetchmailMatch5.0.8
OR
fetchmailfetchmailMatch5.1.0
OR
fetchmailfetchmailMatch5.1.4
OR
fetchmailfetchmailMatch5.2.0
OR
fetchmailfetchmailMatch5.2.1
OR
fetchmailfetchmailMatch5.2.3
OR
fetchmailfetchmailMatch5.2.4
OR
fetchmailfetchmailMatch5.2.7
OR
fetchmailfetchmailMatch5.2.8
OR
fetchmailfetchmailMatch5.3.0
OR
fetchmailfetchmailMatch5.3.1
OR
fetchmailfetchmailMatch5.3.3
OR
fetchmailfetchmailMatch5.3.8
OR
fetchmailfetchmailMatch5.4.0
OR
fetchmailfetchmailMatch5.4.3
OR
fetchmailfetchmailMatch5.4.4
OR
fetchmailfetchmailMatch5.4.5
OR
fetchmailfetchmailMatch5.5.0
OR
fetchmailfetchmailMatch5.5.2
OR
fetchmailfetchmailMatch5.5.3
OR
fetchmailfetchmailMatch5.5.5
OR
fetchmailfetchmailMatch5.5.6
OR
fetchmailfetchmailMatch5.6.0
OR
fetchmailfetchmailMatch5.7.0
OR
fetchmailfetchmailMatch5.7.2
OR
fetchmailfetchmailMatch5.7.4
OR
fetchmailfetchmailMatch5.8
OR
fetchmailfetchmailMatch5.8.1
OR
fetchmailfetchmailMatch5.8.2
OR
fetchmailfetchmailMatch5.8.3
OR
fetchmailfetchmailMatch5.8.4
OR
fetchmailfetchmailMatch5.8.5
OR
fetchmailfetchmailMatch5.8.6
OR
fetchmailfetchmailMatch5.8.11
OR
fetchmailfetchmailMatch5.8.13
OR
fetchmailfetchmailMatch5.8.14
OR
fetchmailfetchmailMatch5.8.17
OR
fetchmailfetchmailMatch5.9.0
OR
fetchmailfetchmailMatch5.9.4
OR
fetchmailfetchmailMatch5.9.5
OR
fetchmailfetchmailMatch5.9.8
OR
fetchmailfetchmailMatch5.9.10
OR
fetchmailfetchmailMatch5.9.11
OR
fetchmailfetchmailMatch5.9.13
VendorProductVersionCPE
fetchmailfetchmail*cpe:2.3:a:fetchmail:fetchmail:*:*:*:*:*:*:*:*
fetchmailfetchmail4.5.1cpe:2.3:a:fetchmail:fetchmail:4.5.1:*:*:*:*:*:*:*
fetchmailfetchmail4.5.2cpe:2.3:a:fetchmail:fetchmail:4.5.2:*:*:*:*:*:*:*
fetchmailfetchmail4.5.3cpe:2.3:a:fetchmail:fetchmail:4.5.3:*:*:*:*:*:*:*
fetchmailfetchmail4.5.4cpe:2.3:a:fetchmail:fetchmail:4.5.4:*:*:*:*:*:*:*
fetchmailfetchmail4.5.5cpe:2.3:a:fetchmail:fetchmail:4.5.5:*:*:*:*:*:*:*
fetchmailfetchmail4.5.6cpe:2.3:a:fetchmail:fetchmail:4.5.6:*:*:*:*:*:*:*
fetchmailfetchmail4.5.7cpe:2.3:a:fetchmail:fetchmail:4.5.7:*:*:*:*:*:*:*
fetchmailfetchmail4.5.8cpe:2.3:a:fetchmail:fetchmail:4.5.8:*:*:*:*:*:*:*
fetchmailfetchmail4.6.0cpe:2.3:a:fetchmail:fetchmail:4.6.0:*:*:*:*:*:*:*
Rows per page:
1-10 of 791

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.118

Percentile

95.3%