HIGH
uw-imap: buffer overflow in dmail and tmail
Published Nov 10, 2008
10.0
HIGHCVSS 2.0
EPSS 6.35%
Description
Multiple stack-based buffer overflows in (1) University of Washington IMAP Toolkit 2002 through 2007c, (2) University of Washington Alpine 2.00 and earlier, and (3) Panda IMAP allow (a) local users to gain privileges by specifying a long folder extension argument on the command line to the tmail or dmail program; and (b) remote attackers to execute arbitrary code by sending e-mail to a destination mailbox name composed of a username and '+' character followed by a long string, processed by the tmail or possibly dmail program.
Affected products
No data.
OR
- 0.80
- 0.81
- 0.82
- 0.83
- 0.98
- 0.99
- 0.999
- 0.9999
- 0.99999
- 0.999999
- 1.00
- 1.10
- 2.00
- 2002
- 2003
- 2004
- 2005
- 2006
- 2007
- 2007c
No data.
Red Hat Enterprise Linux 3
imap-1:2002d-15
Fixed · RHSA-2009:0275
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 3 | imap-1:2002d-15 | Fixed | RHSA-2009:0275 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (32)
- http://mailman2.u.washington.edu/pipermail/imap-uw/2008-October/002267.html mailing-listx_refsource_MLISTPatch
- http://mailman2.u.washington.edu/pipermail/imap-uw/2008-October/002268.html mailing-listx_refsource_MLIST
- http://marc.info/?l=full-disclosure&m=122572590212610&w=4 mailing-listx_refsource_FULLDISC
- http://panda.com/imap/ x_refsource_CONFIRM
- http://rhn.redhat.com/errata/RHSA-2009-0275.html vendor-advisoryx_refsource_REDHAT
- http://secunia.com/advisories/32483 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/32512 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/33142 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/33996 third-party-advisoryx_refsource_SECUNIA
- http://securityreason.com/securityalert/4570 third-party-advisoryx_refsource_SREASON
- http://securitytracker.com/id?1021131 vdb-entryx_refsource_SECTRACK
- http://support.avaya.com/elmodocs2/security/ASA-2009-065.htm x_refsource_CONFIRM
- http://www.bitsec.com/en/rad/bsa-081103.c x_refsource_MISCURL Repurposed
- http://www.bitsec.com/en/rad/bsa-081103.txt x_refsource_MISCURL Repurposed
- http://www.debian.org/security/2008/dsa-1685 vendor-advisoryx_refsource_DEBIAN
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:146 vendor-advisoryx_refsource_MANDRIVA
- http://www.openwall.com/lists/oss-security/2008/11/03/3 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2008/11/03/4 mailing-listx_refsource_MLIST
- http://www.openwall.com/lists/oss-security/2008/11/03/5 mailing-listx_refsource_MLIST
- http://www.securityfocus.com/archive/1/498002/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/32072 vdb-entryx_refsource_BID
- http://www.vupen.com/english/advisories/2008/3042 vdb-entryx_refsource_VUPEN
- http://www.washington.edu/alpine/tmailbug.html x_refsource_MISC
- https://access.redhat.com/security/cve/CVE-2008-5005 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=469667 x_refsource_CONFIRMPatchIssue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-4984 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46281 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2008-5005
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10485 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2008-5005
- https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00058.html vendor-advisoryx_refsource_FEDORA
- https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00082.html vendor-advisoryx_refsource_FEDORA
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 10, 2008
Updated Aug 7, 2024
Reserved Nov 10, 2008
Link CVE-2008-5005
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2008-4984 Assigner mitre
Published Nov 10, 2008
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2008-4984