CVE Vulnerabilities

CVE-2005-4348

Published: Dec 21, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

fetchmail before 6.3.1 and before 6.2.5.5, when configured for multidrop mode, allows remote attackers to cause a denial of service (application crash) by sending messages without headers from upstream mail servers.

Affected Software

NameVendorStart VersionEnd Version
FetchmailFetchmail6.2.0 (including)6.2.5.5 (excluding)
FetchmailFetchmail6.3.0 (including)6.3.1 (excluding)
Red Hat Enterprise Linux 2.1RedHatfetchmail-0:5.9.0-21.7.3.el2.1.4*
Red Hat Enterprise Linux 3RedHatfetchmail-0:6.2.0-3.el3.3*
Red Hat Enterprise Linux 4RedHatfetchmail-0:6.2.5-6.el4.5*
FetchmailUbuntudapper*
FetchmailUbuntudevel*
FetchmailUbuntuedgy*
FetchmailUbuntufeisty*

References