Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2012-6579
HistoryJul 24, 2013 - 12:01 p.m.

CVE-2012-6579

2013-07-2412:01:45
Debian Security Bug Tracker
security-tracker.debian.org
14
best practical solutions
rt 3.8.x
4.0.x
gnupg
remote attack
denial of service
e-mail
queue's address
unix

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:P/A:P

EPSS

0.001

Percentile

51.1%

Best Practical Solutions RT 3.8.x before 3.8.15 and 4.0.x before 4.0.8, when GnuPG is enabled, allows remote attackers to configure encryption or signing for certain outbound e-mail, and possibly cause a denial of service (loss of e-mail readability), via an e-mail message to a queue’s address.

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:P/A:P

EPSS

0.001

Percentile

51.1%

Related for DEBIANCVE:CVE-2012-6579