
CVE-2006-0709
https://notcve.org/view.php?id=CVE-2006-0709
15 Feb 2006 — Buffer overflow in Metamail 2.7-50 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via e-mail messages with a long boundary attribute, a different vulnerability than CVE-2004-0105. • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=352482 •

CVE-2004-1808
https://notcve.org/view.php?id=CVE-2004-1808
31 Dec 2004 — Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbitrary files via a symlink attack. • http://marc.info/?l=bugtraq&m=107910934926062&w=2 •

CVE-2004-0104 – Metamail 2.7 - Multiple Buffer Overflow / Format String Handling Vulnerabilities
https://notcve.org/view.php?id=CVE-2004-0104
19 Feb 2004 — Multiple format string vulnerabilities in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code. Múltiples vulnerabilidades de cadena de formato en Metamail 2.7 y anteriores permiten a atacantes remotos ejecutar código arbitrario. • https://www.exploit-db.com/exploits/23728 •

CVE-2004-0105
https://notcve.org/view.php?id=CVE-2004-0105
19 Feb 2004 — Multiple buffer overflows in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code. Múltiples desbordamientos de búfe en Metamail 2.7 y anteriores permiten a atacantes remtos ejecutar código arbitrario. • http://archives.neohapsis.com/archives/vulnwatch/2004-q1/0041.html •

CVE-1999-1263
https://notcve.org/view.php?id=CVE-1999-1263
09 Mar 2002 — Metamail before 2.7-7.2 allows remote attackers to overwrite arbitrary files via an e-mail message containing a uuencoded attachment that specifies the full pathname for the file to be modified, which is processed by uuencode in Metamail scripts such as sun-audio-file. • http://marc.info/?l=bugtraq&m=87773365324657&w=2 •

CVE-1999-1261
https://notcve.org/view.php?id=CVE-1999-1261
24 Oct 1997 — Buffer overflow in Rainbow Six Multiplayer allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long nickname (nick) command. • http://www.securityfocus.com/archive/1/12433 •

CVE-1999-1266
https://notcve.org/view.php?id=CVE-1999-1266
13 Jun 1997 — rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which allows remote attackers to determine valid users on the system. • http://www.securityfocus.com/archive/1/6978 •