CVE Vulnerabilities

CVE-2006-0052

Published: Mar 31, 2006 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

The attachment scrubber (Scrubber.py) in Mailman 2.1.5 and earlier, when using Pythons library email module 2.5, allows remote attackers to cause a denial of service (mailing list delivery failure) via a multipart MIME message with a single part that has two blank lines between the first boundary and the end boundary.

Affected Software

Name Vendor Start Version End Version
Mailman Gnu 1.0 (including) 1.0 (including)
Mailman Gnu 1.1 (including) 1.1 (including)
Mailman Gnu 2.0 (including) 2.0 (including)
Mailman Gnu 2.0-beta3 (including) 2.0-beta3 (including)
Mailman Gnu 2.0-beta4 (including) 2.0-beta4 (including)
Mailman Gnu 2.0-beta5 (including) 2.0-beta5 (including)
Mailman Gnu 2.0.1 (including) 2.0.1 (including)
Mailman Gnu 2.0.2 (including) 2.0.2 (including)
Mailman Gnu 2.0.3 (including) 2.0.3 (including)
Mailman Gnu 2.0.4 (including) 2.0.4 (including)
Mailman Gnu 2.0.5 (including) 2.0.5 (including)
Mailman Gnu 2.0.6 (including) 2.0.6 (including)
Mailman Gnu 2.0.7 (including) 2.0.7 (including)
Mailman Gnu 2.0.8 (including) 2.0.8 (including)
Mailman Gnu 2.0.9 (including) 2.0.9 (including)
Mailman Gnu 2.0.10 (including) 2.0.10 (including)
Mailman Gnu 2.0.11 (including) 2.0.11 (including)
Mailman Gnu 2.0.12 (including) 2.0.12 (including)
Mailman Gnu 2.0.13 (including) 2.0.13 (including)
Mailman Gnu 2.0.14 (including) 2.0.14 (including)
Mailman Gnu 2.1 (including) 2.1 (including)
Mailman Gnu 2.1.1 (including) 2.1.1 (including)
Mailman Gnu 2.1.2 (including) 2.1.2 (including)
Mailman Gnu 2.1.3 (including) 2.1.3 (including)
Mailman Gnu 2.1.4 (including) 2.1.4 (including)
Mailman Gnu 2.1.5 (including) 2.1.5 (including)
Mailman Gnu 2.1b1 (including) 2.1b1 (including)
Red Hat Enterprise Linux 3 RedHat mailman-3:2.1.5.1-25.rhel3.5 *
Red Hat Enterprise Linux 4 RedHat mailman-3:2.1.5.1-34.rhel4.3 *
Mailman Ubuntu dapper *
Mailman Ubuntu edgy *
Mailman Ubuntu upstream *

References