CVE Vulnerabilities

CVE-2006-0052

Published: Mar 31, 2006 | Modified: Oct 03, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The attachment scrubber (Scrubber.py) in Mailman 2.1.5 and earlier, when using Pythons library email module 2.5, allows remote attackers to cause a denial of service (mailing list delivery failure) via a multipart MIME message with a single part that has two blank lines between the first boundary and the end boundary.

Affected Software

Name Vendor Start Version End Version
Mailman Gnu 1.0 (including) 1.0 (including)
Mailman Gnu 1.1 (including) 1.1 (including)
Mailman Gnu 2.0 (including) 2.0 (including)
Mailman Gnu 2.0-beta3 (including) 2.0-beta3 (including)
Mailman Gnu 2.0-beta4 (including) 2.0-beta4 (including)
Mailman Gnu 2.0-beta5 (including) 2.0-beta5 (including)
Mailman Gnu 2.0.1 (including) 2.0.1 (including)
Mailman Gnu 2.0.2 (including) 2.0.2 (including)
Mailman Gnu 2.0.3 (including) 2.0.3 (including)
Mailman Gnu 2.0.4 (including) 2.0.4 (including)
Mailman Gnu 2.0.5 (including) 2.0.5 (including)
Mailman Gnu 2.0.6 (including) 2.0.6 (including)
Mailman Gnu 2.0.7 (including) 2.0.7 (including)
Mailman Gnu 2.0.8 (including) 2.0.8 (including)
Mailman Gnu 2.0.9 (including) 2.0.9 (including)
Mailman Gnu 2.0.10 (including) 2.0.10 (including)
Mailman Gnu 2.0.11 (including) 2.0.11 (including)
Mailman Gnu 2.0.12 (including) 2.0.12 (including)
Mailman Gnu 2.0.13 (including) 2.0.13 (including)
Mailman Gnu 2.0.14 (including) 2.0.14 (including)
Mailman Gnu 2.1 (including) 2.1 (including)
Mailman Gnu 2.1.1 (including) 2.1.1 (including)
Mailman Gnu 2.1.2 (including) 2.1.2 (including)
Mailman Gnu 2.1.3 (including) 2.1.3 (including)
Mailman Gnu 2.1.4 (including) 2.1.4 (including)
Mailman Gnu 2.1.5 (including) 2.1.5 (including)
Mailman Gnu 2.1b1 (including) 2.1b1 (including)

References