CVE Vulnerabilities

CVE-2011-1947

Published: Jun 02, 2011 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

fetchmail 5.9.9 through 6.3.19 does not properly limit the wait time after issuing a (1) STARTTLS or (2) STLS request, which allows remote servers to cause a denial of service (application hang) by acknowledging the request but not sending additional packets.

Affected Software

NameVendorStart VersionEnd Version
FetchmailFetchmail5.9.9 (including)5.9.9 (including)
FetchmailFetchmail5.9.10 (including)5.9.10 (including)
FetchmailFetchmail5.9.11 (including)5.9.11 (including)
FetchmailFetchmail5.9.13 (including)5.9.13 (including)
FetchmailFetchmail6.0.0 (including)6.0.0 (including)
FetchmailFetchmail6.1.0 (including)6.1.0 (including)
FetchmailFetchmail6.1.3 (including)6.1.3 (including)
FetchmailFetchmail6.2.0 (including)6.2.0 (including)
FetchmailFetchmail6.2.1 (including)6.2.1 (including)
FetchmailFetchmail6.2.2 (including)6.2.2 (including)
FetchmailFetchmail6.2.3 (including)6.2.3 (including)
FetchmailFetchmail6.2.4 (including)6.2.4 (including)
FetchmailFetchmail6.2.5 (including)6.2.5 (including)
FetchmailFetchmail6.2.5.1 (including)6.2.5.1 (including)
FetchmailFetchmail6.2.5.2 (including)6.2.5.2 (including)
FetchmailFetchmail6.2.5.4 (including)6.2.5.4 (including)
FetchmailFetchmail6.2.6-pre4 (including)6.2.6-pre4 (including)
FetchmailFetchmail6.2.6-pre8 (including)6.2.6-pre8 (including)
FetchmailFetchmail6.2.6-pre9 (including)6.2.6-pre9 (including)
FetchmailFetchmail6.2.9-rc10 (including)6.2.9-rc10 (including)
FetchmailFetchmail6.2.9-rc3 (including)6.2.9-rc3 (including)
FetchmailFetchmail6.2.9-rc4 (including)6.2.9-rc4 (including)
FetchmailFetchmail6.2.9-rc5 (including)6.2.9-rc5 (including)
FetchmailFetchmail6.2.9-rc7 (including)6.2.9-rc7 (including)
FetchmailFetchmail6.2.9-rc8 (including)6.2.9-rc8 (including)
FetchmailFetchmail6.2.9-rc9 (including)6.2.9-rc9 (including)
FetchmailFetchmail6.3.0 (including)6.3.0 (including)
FetchmailFetchmail6.3.1 (including)6.3.1 (including)
FetchmailFetchmail6.3.2 (including)6.3.2 (including)
FetchmailFetchmail6.3.3 (including)6.3.3 (including)
FetchmailFetchmail6.3.4 (including)6.3.4 (including)
FetchmailFetchmail6.3.5 (including)6.3.5 (including)
FetchmailFetchmail6.3.6 (including)6.3.6 (including)
FetchmailFetchmail6.3.6-rc1 (including)6.3.6-rc1 (including)
FetchmailFetchmail6.3.6-rc2 (including)6.3.6-rc2 (including)
FetchmailFetchmail6.3.6-rc3 (including)6.3.6-rc3 (including)
FetchmailFetchmail6.3.6-rc4 (including)6.3.6-rc4 (including)
FetchmailFetchmail6.3.6-rc5 (including)6.3.6-rc5 (including)
FetchmailFetchmail6.3.7 (including)6.3.7 (including)
FetchmailFetchmail6.3.8 (including)6.3.8 (including)
FetchmailFetchmail6.3.9 (including)6.3.9 (including)
FetchmailFetchmail6.3.9-rc2 (including)6.3.9-rc2 (including)
FetchmailFetchmail6.3.10 (including)6.3.10 (including)
FetchmailFetchmail6.3.11 (including)6.3.11 (including)
FetchmailFetchmail6.3.12 (including)6.3.12 (including)
FetchmailFetchmail6.3.13 (including)6.3.13 (including)
FetchmailFetchmail6.3.14 (including)6.3.14 (including)
FetchmailFetchmail6.3.15 (including)6.3.15 (including)
FetchmailFetchmail6.3.16 (including)6.3.16 (including)
FetchmailFetchmail6.3.17 (including)6.3.17 (including)
FetchmailFetchmail6.3.18 (including)6.3.18 (including)
FetchmailFetchmail6.3.19 (including)6.3.19 (including)
FetchmailUbuntuartful*
FetchmailUbuntucosmic*
FetchmailUbuntudisco*
FetchmailUbuntueoan*
FetchmailUbuntugroovy*
FetchmailUbuntuhardy*
FetchmailUbuntulucid*
FetchmailUbuntumaverick*
FetchmailUbuntunatty*
FetchmailUbuntuoneiric*
FetchmailUbuntuprecise*
FetchmailUbuntuquantal*
FetchmailUbunturaring*
FetchmailUbuntusaucy*
FetchmailUbuntuupstream*
FetchmailUbuntuutopic*
FetchmailUbuntuvivid*
FetchmailUbuntuwily*
FetchmailUbuntuyakkety*
FetchmailUbuntuzesty*

References