MEDIUM
security flaw
Published Nov 6, 2003
5.0
MEDIUMCVSS 2.0
EPSS 8.56%
Description
Multiple vulnerabilities in multiple vendor implementations of the Secure/Multipurpose Internet Mail Extensions (S/MIME) protocol allow remote attackers to cause a denial of service and possibly execute arbitrary code via an S/MIME email message containing certain unexpected ASN.1 constructs, as demonstrated using the NISSC test suite.
Affected products
No data.
OR
- 6.0
- n/a
No data.
Red Hat Linux 9
n/a
Fixed · RHSA-2004:112
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Linux 9 | n/a | Fixed | RHSA-2004:112 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (17)
- ftp://patches.sgi.com/support/free/security/advisories/20040402-01-U.asc vendor-advisoryx_refsource_SGI
- http://marc.info/?l=bugtraq&m=108448379429944&w=2 vendor-advisoryx_refsource_HP
- http://marc.info/?l=bugtraq&m=109900315219363&w=2 vendor-advisoryx_refsource_FEDORA
- http://www.kb.cert.org/vuls/id/428230 third-party-advisoryx_refsource_CERT-VNThird Party AdvisoryUS Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2004:021 vendor-advisoryx_refsource_MANDRAKE
- http://www.redhat.com/support/errata/RHSA-2004-110.html vendor-advisoryx_refsource_REDHATPatchVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2004-112.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/8981 vdb-entryx_refsource_BIDVendor Advisory
- http://www.uniras.gov.uk/vuls/2003/006489/smime.htm x_refsource_MISCPatchVendor Advisory
- https://access.redhat.com/security/cve/CVE-2003-0564 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1617056 Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/13603 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2003-0564
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11462 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A872 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A914 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2003-0564
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 6, 2003
Updated Aug 8, 2024
Reserved Jul 15, 2003
Link CVE-2003-0564
CISA Vulnrichment
Updated n/a