Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-5514
HistoryDec 23, 2008 - 12:00 a.m.

CVE-2008-5514

2008-12-2300:00:00
ubuntu.com
ubuntu.com
11

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

EPSS

0.002

Percentile

62.2%

Off-by-one error in the rfc822_output_char function in the RFC822BUFFER
routines in the University of Washington (UW) c-client library, as used by
the UW IMAP toolkit before imap-2007e and other applications, allows
context-dependent attackers to cause a denial of service (crash) via an
e-mail message that triggers a buffer overflow.

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

EPSS

0.002

Percentile

62.2%