CVE-2005-4153
Ubuntu Security Notice 242-1
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Mailman 2.1.4 through 2.1.6 allows remote attackers to cause a denial of service via a message that causes the server to "fail with an Overflow on bad date data in a processed message," a different vulnerability than CVE-2005-3573.
Mailman 2.1.4 a 2.1.6 permite a atacantes remotos causar una denegación de servicio mediante un mensaje que causa que el servidor "falle con un desbordamiento en datos de fecha incorrectos en un mensaje procesado", una vulnerabilidad diferente de CVE-2005-3572.
Aliet Santiesteban Sifontes discovered a remote denial of service vulnerability in the attachment handler of mailman. An email with an attachment whose filename contained invalid UTF-8 characters caused mailman to crash. Mailman did not sufficiently verify the validity of email dates. Very large numbers in dates caused mailman to crash.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2005-12-11 CVE Reserved
- 2005-12-11 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (18)
URL | Tag | Source |
---|---|---|
http://www.osvdb.org/21723 | Vdb Entry | |
http://www.securityfocus.com/bid/16248 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23139 | Vdb Entry | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10660 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2005:222 | 2017-10-11 |
URL | Date | SRC |
---|---|---|
ftp://patches.sgi.com/support/free/security/advisories/20060401-01-U | 2017-10-11 | |
http://secunia.com/advisories/18449 | 2017-10-11 | |
http://secunia.com/advisories/18456 | 2017-10-11 | |
http://secunia.com/advisories/18612 | 2017-10-11 | |
http://secunia.com/advisories/19167 | 2017-10-11 | |
http://secunia.com/advisories/19196 | 2017-10-11 | |
http://secunia.com/advisories/19532 | 2017-10-11 | |
http://www.debian.org/security/2006/dsa-955 | 2017-10-11 | |
http://www.redhat.com/support/errata/RHSA-2006-0204.html | 2017-10-11 | |
http://www.trustix.org/errata/2006/0012 | 2017-10-11 | |
http://www.ubuntu.com/usn/usn-242-1 | 2017-10-11 | |
https://access.redhat.com/security/cve/CVE-2005-4153 | 2006-03-07 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1617854 | 2006-03-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Gnu Search vendor "Gnu" | Mailman Search vendor "Gnu" for product "Mailman" | 2.1.4 Search vendor "Gnu" for product "Mailman" and version "2.1.4" | - |
Affected
| ||||||
Gnu Search vendor "Gnu" | Mailman Search vendor "Gnu" for product "Mailman" | 2.1.5 Search vendor "Gnu" for product "Mailman" and version "2.1.5" | - |
Affected
| ||||||
Gnu Search vendor "Gnu" | Mailman Search vendor "Gnu" for product "Mailman" | 2.1.6 Search vendor "Gnu" for product "Mailman" and version "2.1.6" | - |
Affected
|