Search CVE reports


Toggle filters

11 – 17 of 17 results


CVE-2007-1558

Medium priority

Some fixes available 6 of 21

The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all...

8 affected packages

fetchmail, iceape, im, mew, mew-beta...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fetchmail
iceape
im
mew
mew-beta
mozilla-thunderbird
wl
wl-beta
Show all 8 packages Show less packages

CVE-2006-5974

Medium priority
Fixed

fetchmail 6.3.5 and 6.3.6 before 6.3.6-rc4, when refusing a message delivered via the mda option, allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger a NULL pointer dereference when...

1 affected package

fetchmail

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fetchmail
Show less packages

CVE-2006-5867

Medium priority
Fixed

fetchmail before 6.3.6-rc4 does not properly enforce TLS and may transmit cleartext passwords over unsecured links if certain circumstances occur, which allows remote attackers to obtain sensitive information via man-in-the-middle...

1 affected package

fetchmail

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fetchmail
Show less packages

CVE-2006-0321

Medium priority
Fixed

fetchmail 6.3.0 and other versions before 6.3.2 allows remote attackers to cause a denial of service (crash) via crafted e-mail messages that cause a free of an invalid pointer when fetchmail bounces the message to the originator...

1 affected package

fetchmail

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fetchmail
Show less packages

CVE-2005-4348

Medium priority
Fixed

fetchmail before 6.3.1 and before 6.2.5.5, when configured for multidrop mode, allows remote attackers to cause a denial of service (application crash) by sending messages without headers from upstream mail servers.

1 affected package

fetchmail

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fetchmail
Show less packages

CVE-2005-3088

Medium priority
Fixed

fetchmailconf before 1.49 in fetchmail 6.2.0, 6.2.5 and 6.2.5.2 creates configuration files with insecure world-readable permissions, which allows local users to obtain sensitive information such as passwords.

1 affected package

fetchmail

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fetchmail
Show less packages

CVE-2005-2335

Medium priority
Fixed

Buffer overflow in the POP3 client in Fetchmail before 6.2.5.2 allows remote POP3 servers to cause a denial of service and possibly execute arbitrary code via long UIDL responses. NOTE: a typo in an advisory accidentally used the...

1 affected package

fetchmail

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fetchmail
Show less packages