mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 09:11:28 +00:00
398 lines
16 KiB
JSON
398 lines
16 KiB
JSON
{
|
|
"id": "CVE-2006-5973",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2006-11-20T19:07:00.000",
|
|
"lastModified": "2018-10-17T21:46:10.420",
|
|
"vulnStatus": "Modified",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to \"yes,\" allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Desbordamiento de b\u00fafer (off-by-one) en Dovecot 1.0test53 hasta 1.0.rc14, y posiblemente otras versiones, cuando se utilizan los archivos de \u00edndice y mmap_disable tiene el valor \"S\u00ed\", permite a usuarios IMAP o POP3 remotos autenticados provocar una denegaci\u00f3n de servicio (ca\u00edda) a trav\u00e9s de vectores no especificados relacionados con el archivo de cach\u00e9."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "PARTIAL",
|
|
"baseScore": 5.0
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 10.0,
|
|
"impactScore": 2.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "NVD-CWE-Other"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FE001666-8419-4F23-A9C4-CC2E929C7447"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "86F564E2-721D-4F4F-8B45-FC90F2D62DE7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3A8EE39E-DF06-4A1B-90F4-A7E21D330BD2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C69B06A3-A25D-40B1-B9CB-E68ADB9E5D07"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0F747D8B-F93C-4E3C-BBF1-0550B20619F5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.alpha5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6C4E1572-1B6B-419E-93DA-6402A1D58BD5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DD171A21-01BA-4CCB-8356-1EC55E539AE0"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0283E4D9-CA0F-476A-9A60-F3907161E77C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "09E2770B-890A-445B-A2DC-4F9C51907D6D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7D8F5B7D-C37F-4F68-8C1A-8007B4DAAF8F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "34F3EC01-44EE-412F-91DC-7D3DDF7391BD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "05F7212B-6EBA-4D7C-B109-51E8C6AAB091"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CA82FA94-2DDF-4348-A7CE-26F2569EAC07"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A6B819BA-4A6D-47ED-AFBC-88FDA2C6E80F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.beta9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BF2C16A6-F6C5-40E5-B047-49BD1587B7A6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D48448F5-A26B-4C4D-87A3-9736AD885CE9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "50C114BF-DE41-4E48-B09D-6721591EC30A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A9D62301-F829-4834-AEEE-9A1C16B4C97E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8F25E954-274D-4264-9824-51A741620FE0"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DC6C599C-446A-4B2E-96F8-BB110A1C504E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "81AC8ED0-0A6D-4FC6-BC4B-77F13D8304BD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3E0A7237-E966-4FB7-A8BA-1BBDDB255E07"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9CB80AEB-0EED-4489-9EA6-D0A161CA3358"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc9:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F2377CA2-F186-4656-9539-9C119F15AB24"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc10:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "162BCB07-AC35-4920-92DD-F30F76F50661"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc11:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1D7A1992-2D8E-404E-A465-04AA102D177F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc12:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "15AAC5DE-3EBD-410C-AF52-34206798F5A0"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc13:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "70F4B6B6-EC9F-477D-B2C4-AA866171AF7F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.rc14:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7C2BA3FB-7839-4C30-8FCD-1A2B6EC1366C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test53:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7F9FB465-9B28-4E51-9C1B-3B3E95C770AC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test54:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2E15588C-E706-442C-8F95-D08D7B227A19"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test55:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3015515E-7ED7-4308-8DD5-F9D59FCBE23D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test56:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F1BF76DF-2559-4B50-9931-95CE5B6D3B32"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test57:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "480F1CDD-8B6D-4EB9-9FE7-89124E555F38"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test58:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1B9DD306-09D5-4975-AC5C-BDC6D352A4F8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test59:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FA7048E7-BCCF-4EC5-9275-616A65FB93AE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test60:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A29452A0-4437-4E87-A58D-A590233BCCA2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test61:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E2953A3F-5B7E-4589-A798-04ED8FA6D846"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test62:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "04EEFEF2-6931-4C8A-83DC-B6EBFA0C82EC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test63:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "01C2647D-712E-4C02-BFBA-9CAB0CB79874"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test64:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E5213FB0-0267-49FC-85B1-013B37C4CB02"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test65:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B0671DA4-140C-45B3-8AC1-DD3CD9AD860D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test66:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5C41A65F-F001-495A-B37F-6A2BFC428306"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test67:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A8EFC54A-B5EE-4C1F-896D-EAEAAAF4C8B2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test68:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8E274331-9872-428C-B82D-0E6E73D2C1AA"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test69:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FFF7A820-9B52-4FAB-B614-2DD790276697"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test70:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DFD8BA09-E10A-410F-AB50-B85D3EDC14AC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test71:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "31468EE5-EDDE-478E-BE08-076BE53AE9BE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test72:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2E5FBEBE-AF1F-469C-B28E-9A9CD067945F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test73:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0074CD5D-3B37-42E3-A89E-DCF568806DAF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test74:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6C89A772-ED4A-40FB-8918-B1533054F205"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test75:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4B0D065C-E2EF-41F8-A641-10B93F600379"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test76:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "75154FA2-E5D1-4846-B574-19944D85276F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test77:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F0EEF31C-CFC7-46B8-B7D9-7D0541F4181D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test78:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6697F625-06B6-4713-BB58-8B6CA6257976"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test79:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D42FE491-70B5-4827-A3CF-0DF4B4751B67"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:timo_sirainen:dovecot:1.0.test80:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "69CAA28D-DDBF-4026-86D6-E4307E24E223"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://dovecot.org/list/dovecot-news/2006-November/000023.html",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://dovecot.org/pipermail/dovecot-news/2006-November/000024.html",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Patch"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://securitytracker.com/id?1017288",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.novell.com/linux/security/advisories/2006_73_mono.html",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/archive/1/452081/100/0/threaded",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/21183/info",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.ubuntu.com/usn/usn-387-1",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.vupen.com/english/advisories/2006/4614",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/30433",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://issues.rpath.com/browse/RPL-802",
|
|
"source": "cve@mitre.org"
|
|
}
|
|
]
|
|
} |