{ "id": "CVE-2006-5973", "sourceIdentifier": "cve@mitre.org", "published": "2006-11-20T19:07:00.000", "lastModified": "2018-10-17T21:46:10.420", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to \"yes,\" allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file." }, { "lang": "es", "value": "Desbordamiento de b\u00fafer (off-by-one) en Dovecot 1.0test53 hasta 1.0.rc14, y posiblemente otras versiones, cuando se utilizan los archivos de \u00edndice y mmap_disable tiene el valor \"S\u00ed\", permite a usuarios IMAP o POP3 remotos autenticados provocar una denegaci\u00f3n de servicio (ca\u00edda) a trav\u00e9s de vectores no especificados relacionados con el archivo de cach\u00e9." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.0 }, "baseSeverity": "MEDIUM", "exploitabilityScore": 10.0, "impactScore": 2.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-Other" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0:*:*:*:*:*:*:*", "matchCriteriaId": "FE001666-8419-4F23-A9C4-CC2E929C7447" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha1:*:*:*:*:*:*:*", "matchCriteriaId": "86F564E2-721D-4F4F-8B45-FC90F2D62DE7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha2:*:*:*:*:*:*:*", "matchCriteriaId": "3A8EE39E-DF06-4A1B-90F4-A7E21D330BD2" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha3:*:*:*:*:*:*:*", "matchCriteriaId": "C69B06A3-A25D-40B1-B9CB-E68ADB9E5D07" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha4:*:*:*:*:*:*:*", "matchCriteriaId": "0F747D8B-F93C-4E3C-BBF1-0550B20619F5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha5:*:*:*:*:*:*:*", "matchCriteriaId": "6C4E1572-1B6B-419E-93DA-6402A1D58BD5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta1:*:*:*:*:*:*:*", "matchCriteriaId": "DD171A21-01BA-4CCB-8356-1EC55E539AE0" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta2:*:*:*:*:*:*:*", "matchCriteriaId": "0283E4D9-CA0F-476A-9A60-F3907161E77C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta3:*:*:*:*:*:*:*", "matchCriteriaId": "09E2770B-890A-445B-A2DC-4F9C51907D6D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta4:*:*:*:*:*:*:*", "matchCriteriaId": "7D8F5B7D-C37F-4F68-8C1A-8007B4DAAF8F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta5:*:*:*:*:*:*:*", "matchCriteriaId": "34F3EC01-44EE-412F-91DC-7D3DDF7391BD" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta6:*:*:*:*:*:*:*", "matchCriteriaId": "05F7212B-6EBA-4D7C-B109-51E8C6AAB091" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta7:*:*:*:*:*:*:*", "matchCriteriaId": "CA82FA94-2DDF-4348-A7CE-26F2569EAC07" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta8:*:*:*:*:*:*:*", "matchCriteriaId": "A6B819BA-4A6D-47ED-AFBC-88FDA2C6E80F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta9:*:*:*:*:*:*:*", "matchCriteriaId": "BF2C16A6-F6C5-40E5-B047-49BD1587B7A6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc1:*:*:*:*:*:*:*", "matchCriteriaId": "D48448F5-A26B-4C4D-87A3-9736AD885CE9" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc2:*:*:*:*:*:*:*", "matchCriteriaId": "50C114BF-DE41-4E48-B09D-6721591EC30A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc3:*:*:*:*:*:*:*", "matchCriteriaId": "A9D62301-F829-4834-AEEE-9A1C16B4C97E" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc4:*:*:*:*:*:*:*", "matchCriteriaId": "8F25E954-274D-4264-9824-51A741620FE0" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc5:*:*:*:*:*:*:*", "matchCriteriaId": "DC6C599C-446A-4B2E-96F8-BB110A1C504E" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc6:*:*:*:*:*:*:*", "matchCriteriaId": "81AC8ED0-0A6D-4FC6-BC4B-77F13D8304BD" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc7:*:*:*:*:*:*:*", "matchCriteriaId": "3E0A7237-E966-4FB7-A8BA-1BBDDB255E07" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc8:*:*:*:*:*:*:*", "matchCriteriaId": "9CB80AEB-0EED-4489-9EA6-D0A161CA3358" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc9:*:*:*:*:*:*:*", "matchCriteriaId": "F2377CA2-F186-4656-9539-9C119F15AB24" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc10:*:*:*:*:*:*:*", "matchCriteriaId": "162BCB07-AC35-4920-92DD-F30F76F50661" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc11:*:*:*:*:*:*:*", "matchCriteriaId": "1D7A1992-2D8E-404E-A465-04AA102D177F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc12:*:*:*:*:*:*:*", "matchCriteriaId": "15AAC5DE-3EBD-410C-AF52-34206798F5A0" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc13:*:*:*:*:*:*:*", "matchCriteriaId": "70F4B6B6-EC9F-477D-B2C4-AA866171AF7F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc14:*:*:*:*:*:*:*", "matchCriteriaId": "7C2BA3FB-7839-4C30-8FCD-1A2B6EC1366C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test53:*:*:*:*:*:*:*", "matchCriteriaId": "7F9FB465-9B28-4E51-9C1B-3B3E95C770AC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test54:*:*:*:*:*:*:*", "matchCriteriaId": "2E15588C-E706-442C-8F95-D08D7B227A19" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test55:*:*:*:*:*:*:*", "matchCriteriaId": "3015515E-7ED7-4308-8DD5-F9D59FCBE23D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test56:*:*:*:*:*:*:*", "matchCriteriaId": "F1BF76DF-2559-4B50-9931-95CE5B6D3B32" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test57:*:*:*:*:*:*:*", "matchCriteriaId": "480F1CDD-8B6D-4EB9-9FE7-89124E555F38" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test58:*:*:*:*:*:*:*", "matchCriteriaId": "1B9DD306-09D5-4975-AC5C-BDC6D352A4F8" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test59:*:*:*:*:*:*:*", "matchCriteriaId": "FA7048E7-BCCF-4EC5-9275-616A65FB93AE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test60:*:*:*:*:*:*:*", "matchCriteriaId": "A29452A0-4437-4E87-A58D-A590233BCCA2" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test61:*:*:*:*:*:*:*", "matchCriteriaId": "E2953A3F-5B7E-4589-A798-04ED8FA6D846" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test62:*:*:*:*:*:*:*", "matchCriteriaId": "04EEFEF2-6931-4C8A-83DC-B6EBFA0C82EC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test63:*:*:*:*:*:*:*", "matchCriteriaId": "01C2647D-712E-4C02-BFBA-9CAB0CB79874" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test64:*:*:*:*:*:*:*", "matchCriteriaId": "E5213FB0-0267-49FC-85B1-013B37C4CB02" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test65:*:*:*:*:*:*:*", "matchCriteriaId": "B0671DA4-140C-45B3-8AC1-DD3CD9AD860D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test66:*:*:*:*:*:*:*", "matchCriteriaId": "5C41A65F-F001-495A-B37F-6A2BFC428306" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test67:*:*:*:*:*:*:*", "matchCriteriaId": "A8EFC54A-B5EE-4C1F-896D-EAEAAAF4C8B2" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test68:*:*:*:*:*:*:*", "matchCriteriaId": "8E274331-9872-428C-B82D-0E6E73D2C1AA" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test69:*:*:*:*:*:*:*", "matchCriteriaId": "FFF7A820-9B52-4FAB-B614-2DD790276697" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test70:*:*:*:*:*:*:*", "matchCriteriaId": "DFD8BA09-E10A-410F-AB50-B85D3EDC14AC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test71:*:*:*:*:*:*:*", "matchCriteriaId": "31468EE5-EDDE-478E-BE08-076BE53AE9BE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test72:*:*:*:*:*:*:*", "matchCriteriaId": "2E5FBEBE-AF1F-469C-B28E-9A9CD067945F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test73:*:*:*:*:*:*:*", "matchCriteriaId": "0074CD5D-3B37-42E3-A89E-DCF568806DAF" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test74:*:*:*:*:*:*:*", "matchCriteriaId": "6C89A772-ED4A-40FB-8918-B1533054F205" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test75:*:*:*:*:*:*:*", "matchCriteriaId": "4B0D065C-E2EF-41F8-A641-10B93F600379" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test76:*:*:*:*:*:*:*", "matchCriteriaId": "75154FA2-E5D1-4846-B574-19944D85276F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test77:*:*:*:*:*:*:*", "matchCriteriaId": "F0EEF31C-CFC7-46B8-B7D9-7D0541F4181D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test78:*:*:*:*:*:*:*", "matchCriteriaId": "6697F625-06B6-4713-BB58-8B6CA6257976" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test79:*:*:*:*:*:*:*", "matchCriteriaId": "D42FE491-70B5-4827-A3CF-0DF4B4751B67" }, { "vulnerable": true, "criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test80:*:*:*:*:*:*:*", "matchCriteriaId": "69CAA28D-DDBF-4026-86D6-E4307E24E223" } ] } ] } ], "references": [ { "url": "http://dovecot.org/list/dovecot-news/2006-November/000023.html", "source": "cve@mitre.org" }, { "url": "http://dovecot.org/pipermail/dovecot-news/2006-November/000024.html", "source": "cve@mitre.org", "tags": [ "Patch" ] }, { "url": "http://securitytracker.com/id?1017288", "source": "cve@mitre.org" }, { "url": "http://www.novell.com/linux/security/advisories/2006_73_mono.html", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/archive/1/452081/100/0/threaded", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/bid/21183/info", "source": "cve@mitre.org" }, { "url": "http://www.ubuntu.com/usn/usn-387-1", "source": "cve@mitre.org" }, { "url": "http://www.vupen.com/english/advisories/2006/4614", "source": "cve@mitre.org" }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/30433", "source": "cve@mitre.org" }, { "url": "https://issues.rpath.com/browse/RPL-802", "source": "cve@mitre.org" } ] }