CVE Vulnerabilities

CVE-2012-3482

Published: Dec 21, 2012 | Modified: Apr 05, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Fetchmail 5.0.8 through 6.3.21, when using NTLM authentication in debug mode, allows remote NTLM servers to (1) cause a denial of service (crash and delayed delivery of inbound mail) via a crafted NTLM response that triggers an out-of-bounds read in the base64 decoder, or (2) obtain sensitive information from memory via an NTLM Type 2 message with a crafted Target Name structure, which triggers an out-of-bounds read.

Affected Software

Name Vendor Start Version End Version
Fetchmail Fetchmail 5.0.8 (including) 5.0.8 (including)
Fetchmail Fetchmail 5.1.0 (including) 5.1.0 (including)
Fetchmail Fetchmail 5.1.4 (including) 5.1.4 (including)
Fetchmail Fetchmail 5.2.0 (including) 5.2.0 (including)
Fetchmail Fetchmail 5.2.1 (including) 5.2.1 (including)
Fetchmail Fetchmail 5.2.3 (including) 5.2.3 (including)
Fetchmail Fetchmail 5.2.4 (including) 5.2.4 (including)
Fetchmail Fetchmail 5.2.7 (including) 5.2.7 (including)
Fetchmail Fetchmail 5.2.8 (including) 5.2.8 (including)
Fetchmail Fetchmail 5.3.0 (including) 5.3.0 (including)
Fetchmail Fetchmail 5.3.1 (including) 5.3.1 (including)
Fetchmail Fetchmail 5.3.3 (including) 5.3.3 (including)
Fetchmail Fetchmail 5.3.8 (including) 5.3.8 (including)
Fetchmail Fetchmail 5.4.0 (including) 5.4.0 (including)
Fetchmail Fetchmail 5.4.3 (including) 5.4.3 (including)
Fetchmail Fetchmail 5.4.4 (including) 5.4.4 (including)
Fetchmail Fetchmail 5.4.5 (including) 5.4.5 (including)
Fetchmail Fetchmail 5.5.0 (including) 5.5.0 (including)
Fetchmail Fetchmail 5.5.2 (including) 5.5.2 (including)
Fetchmail Fetchmail 5.5.3 (including) 5.5.3 (including)
Fetchmail Fetchmail 5.5.5 (including) 5.5.5 (including)
Fetchmail Fetchmail 5.5.6 (including) 5.5.6 (including)
Fetchmail Fetchmail 5.6.0 (including) 5.6.0 (including)
Fetchmail Fetchmail 5.7.0 (including) 5.7.0 (including)
Fetchmail Fetchmail 5.7.2 (including) 5.7.2 (including)
Fetchmail Fetchmail 5.7.4 (including) 5.7.4 (including)
Fetchmail Fetchmail 5.8 (including) 5.8 (including)
Fetchmail Fetchmail 5.8.1 (including) 5.8.1 (including)
Fetchmail Fetchmail 5.8.2 (including) 5.8.2 (including)
Fetchmail Fetchmail 5.8.3 (including) 5.8.3 (including)
Fetchmail Fetchmail 5.8.4 (including) 5.8.4 (including)
Fetchmail Fetchmail 5.8.5 (including) 5.8.5 (including)
Fetchmail Fetchmail 5.8.6 (including) 5.8.6 (including)
Fetchmail Fetchmail 5.8.11 (including) 5.8.11 (including)
Fetchmail Fetchmail 5.8.13 (including) 5.8.13 (including)
Fetchmail Fetchmail 5.8.14 (including) 5.8.14 (including)
Fetchmail Fetchmail 5.8.17 (including) 5.8.17 (including)
Fetchmail Fetchmail 5.9.0 (including) 5.9.0 (including)
Fetchmail Fetchmail 5.9.4 (including) 5.9.4 (including)
Fetchmail Fetchmail 5.9.5 (including) 5.9.5 (including)
Fetchmail Fetchmail 5.9.8 (including) 5.9.8 (including)
Fetchmail Fetchmail 5.9.10 (including) 5.9.10 (including)
Fetchmail Fetchmail 5.9.11 (including) 5.9.11 (including)
Fetchmail Fetchmail 5.9.13 (including) 5.9.13 (including)
Fetchmail Fetchmail 6.0.0 (including) 6.0.0 (including)
Fetchmail Fetchmail 6.1.0 (including) 6.1.0 (including)
Fetchmail Fetchmail 6.1.3 (including) 6.1.3 (including)
Fetchmail Fetchmail 6.2.0 (including) 6.2.0 (including)
Fetchmail Fetchmail 6.2.1 (including) 6.2.1 (including)
Fetchmail Fetchmail 6.2.2 (including) 6.2.2 (including)
Fetchmail Fetchmail 6.2.3 (including) 6.2.3 (including)
Fetchmail Fetchmail 6.2.4 (including) 6.2.4 (including)
Fetchmail Fetchmail 6.2.5 (including) 6.2.5 (including)
Fetchmail Fetchmail 6.2.5.1 (including) 6.2.5.1 (including)
Fetchmail Fetchmail 6.2.5.2 (including) 6.2.5.2 (including)
Fetchmail Fetchmail 6.2.5.4 (including) 6.2.5.4 (including)
Fetchmail Fetchmail 6.2.6-pre4 (including) 6.2.6-pre4 (including)
Fetchmail Fetchmail 6.2.6-pre8 (including) 6.2.6-pre8 (including)
Fetchmail Fetchmail 6.2.6-pre9 (including) 6.2.6-pre9 (including)
Fetchmail Fetchmail 6.2.9-rc10 (including) 6.2.9-rc10 (including)
Fetchmail Fetchmail 6.2.9-rc3 (including) 6.2.9-rc3 (including)
Fetchmail Fetchmail 6.2.9-rc4 (including) 6.2.9-rc4 (including)
Fetchmail Fetchmail 6.2.9-rc5 (including) 6.2.9-rc5 (including)
Fetchmail Fetchmail 6.2.9-rc7 (including) 6.2.9-rc7 (including)
Fetchmail Fetchmail 6.2.9-rc8 (including) 6.2.9-rc8 (including)
Fetchmail Fetchmail 6.2.9-rc9 (including) 6.2.9-rc9 (including)
Fetchmail Fetchmail 6.3.0 (including) 6.3.0 (including)
Fetchmail Fetchmail 6.3.1 (including) 6.3.1 (including)
Fetchmail Fetchmail 6.3.2 (including) 6.3.2 (including)
Fetchmail Fetchmail 6.3.3 (including) 6.3.3 (including)
Fetchmail Fetchmail 6.3.4 (including) 6.3.4 (including)
Fetchmail Fetchmail 6.3.5 (including) 6.3.5 (including)
Fetchmail Fetchmail 6.3.6 (including) 6.3.6 (including)
Fetchmail Fetchmail 6.3.6-rc1 (including) 6.3.6-rc1 (including)
Fetchmail Fetchmail 6.3.6-rc2 (including) 6.3.6-rc2 (including)
Fetchmail Fetchmail 6.3.6-rc3 (including) 6.3.6-rc3 (including)
Fetchmail Fetchmail 6.3.6-rc4 (including) 6.3.6-rc4 (including)
Fetchmail Fetchmail 6.3.6-rc5 (including) 6.3.6-rc5 (including)
Fetchmail Fetchmail 6.3.7 (including) 6.3.7 (including)
Fetchmail Fetchmail 6.3.8 (including) 6.3.8 (including)
Fetchmail Fetchmail 6.3.9 (including) 6.3.9 (including)
Fetchmail Fetchmail 6.3.9-rc2 (including) 6.3.9-rc2 (including)
Fetchmail Fetchmail 6.3.10 (including) 6.3.10 (including)
Fetchmail Fetchmail 6.3.11 (including) 6.3.11 (including)
Fetchmail Fetchmail 6.3.12 (including) 6.3.12 (including)
Fetchmail Fetchmail 6.3.13 (including) 6.3.13 (including)
Fetchmail Fetchmail 6.3.14 (including) 6.3.14 (including)
Fetchmail Fetchmail 6.3.15 (including) 6.3.15 (including)
Fetchmail Fetchmail 6.3.16 (including) 6.3.16 (including)
Fetchmail Fetchmail 6.3.17 (including) 6.3.17 (including)
Fetchmail Fetchmail 6.3.18 (including) 6.3.18 (including)
Fetchmail Fetchmail 6.3.19 (including) 6.3.19 (including)
Fetchmail Fetchmail 6.3.21 (including) 6.3.21 (including)

References