Lucene search

K
cveMitreCVE-2005-1520
HistoryMay 26, 2005 - 4:00 a.m.

CVE-2005-1520

2005-05-2604:00:00
mitre
web.nvd.nist.gov
39
cve-2005-1520
buffer overflow
header.c
gnu mailutils
remote code execution
crafted email
vulnerability

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.113

Percentile

95.2%

Buffer overflow in the header_get_field_name function in header.c for GNU Mailutils 0.5 and 0.6, and other versions before 0.6.90, allows remote attackers to execute arbitrary code via a crafted e-mail.

Affected configurations

Nvd
Node
gnumailutilsMatch0.5
OR
gnumailutilsMatch0.6
VendorProductVersionCPE
gnumailutils0.5cpe:2.3:a:gnu:mailutils:0.5:*:*:*:*:*:*:*
gnumailutils0.6cpe:2.3:a:gnu:mailutils:0.6:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.113

Percentile

95.2%