// For flags

CVE-2006-1173

 

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Sendmail before 8.13.7 allows remote attackers to cause a denial of service via deeply nested, malformed multipart MIME messages that exhaust the stack during the recursive mime8to7 function for performing 8-bit to 7-bit conversion, which prevents Sendmail from delivering queued messages and might lead to disk consumption by core dump files.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-03-12 CVE Reserved
  • 2006-06-07 CVE Published
  • 2023-10-31 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-399: Resource Management Errors
CAPEC
References (58)
URL Date SRC
URL Date SRC
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:17.sendmail.asc 2018-10-18
ftp://patches.sgi.com/support/free/security/advisories/20060601-01-P 2018-10-18
ftp://patches.sgi.com/support/free/security/advisories/20060602-01-U.asc 2018-10-18
http://itrc.hp.com/service/cki/docDisplay.do?docId=c00692635 2018-10-18
http://lists.suse.com/archive/suse-security-announce/2006-Jun/0006.html 2018-10-18
http://secunia.com/advisories/20641 2018-10-18
http://secunia.com/advisories/20650 2018-10-18
http://secunia.com/advisories/20651 2018-10-18
http://secunia.com/advisories/20654 2018-10-18
http://secunia.com/advisories/20673 2018-10-18
http://secunia.com/advisories/20675 2018-10-18
http://secunia.com/advisories/20679 2018-10-18
http://secunia.com/advisories/20683 2018-10-18
http://secunia.com/advisories/20684 2018-10-18
http://secunia.com/advisories/20694 2018-10-18
http://secunia.com/advisories/20726 2018-10-18
http://secunia.com/advisories/20782 2018-10-18
http://secunia.com/advisories/21042 2018-10-18
http://secunia.com/advisories/21160 2018-10-18
http://secunia.com/advisories/21327 2018-10-18
http://secunia.com/advisories/21612 2018-10-18
http://secunia.com/advisories/21647 2018-10-18
http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.631382 2018-10-18
http://www-1.ibm.com/support/search.wss?rs=0&q=IY85415&apar=only 2018-10-18
http://www-1.ibm.com/support/search.wss?rs=0&q=IY85930&apar=only 2018-10-18
http://www.debian.org/security/2006/dsa-1155 2018-10-18
http://www.gentoo.org/security/en/glsa/glsa-200606-19.xml 2018-10-18
http://www.mandriva.com/security/advisories?name=MDKSA-2006:104 2018-10-18
http://www.openbsd.org/errata38.html#sendmail2 2018-10-18
http://www.redhat.com/support/errata/RHSA-2006-0515.html 2018-10-18
http://www.securityfocus.com/archive/1/442939/100/0/threaded 2018-10-18
http://www.vupen.com/english/advisories/2006/2389 2018-10-18
https://access.redhat.com/security/cve/CVE-2006-1173 2006-06-14
https://bugzilla.redhat.com/show_bug.cgi?id=1618028 2006-06-14
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
<= 8.13.6
Search vendor "Sendmail" for product "Sendmail" and version " <= 8.13.6"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.8.8
Search vendor "Sendmail" for product "Sendmail" and version "8.8.8"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.9.0
Search vendor "Sendmail" for product "Sendmail" and version "8.9.0"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.9.1
Search vendor "Sendmail" for product "Sendmail" and version "8.9.1"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.9.2
Search vendor "Sendmail" for product "Sendmail" and version "8.9.2"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.9.3
Search vendor "Sendmail" for product "Sendmail" and version "8.9.3"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.10
Search vendor "Sendmail" for product "Sendmail" and version "8.10"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.10.1
Search vendor "Sendmail" for product "Sendmail" and version "8.10.1"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.10.2
Search vendor "Sendmail" for product "Sendmail" and version "8.10.2"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.0
Search vendor "Sendmail" for product "Sendmail" and version "8.11.0"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.1
Search vendor "Sendmail" for product "Sendmail" and version "8.11.1"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.2
Search vendor "Sendmail" for product "Sendmail" and version "8.11.2"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.3
Search vendor "Sendmail" for product "Sendmail" and version "8.11.3"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.4
Search vendor "Sendmail" for product "Sendmail" and version "8.11.4"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.5
Search vendor "Sendmail" for product "Sendmail" and version "8.11.5"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.6
Search vendor "Sendmail" for product "Sendmail" and version "8.11.6"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.11.7
Search vendor "Sendmail" for product "Sendmail" and version "8.11.7"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12
Search vendor "Sendmail" for product "Sendmail" and version "8.12"
beta10
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12
Search vendor "Sendmail" for product "Sendmail" and version "8.12"
beta12
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12
Search vendor "Sendmail" for product "Sendmail" and version "8.12"
beta16
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12
Search vendor "Sendmail" for product "Sendmail" and version "8.12"
beta5
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12
Search vendor "Sendmail" for product "Sendmail" and version "8.12"
beta7
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.0
Search vendor "Sendmail" for product "Sendmail" and version "8.12.0"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.1
Search vendor "Sendmail" for product "Sendmail" and version "8.12.1"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.2
Search vendor "Sendmail" for product "Sendmail" and version "8.12.2"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.3
Search vendor "Sendmail" for product "Sendmail" and version "8.12.3"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.4
Search vendor "Sendmail" for product "Sendmail" and version "8.12.4"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.5
Search vendor "Sendmail" for product "Sendmail" and version "8.12.5"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.6
Search vendor "Sendmail" for product "Sendmail" and version "8.12.6"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.7
Search vendor "Sendmail" for product "Sendmail" and version "8.12.7"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.8
Search vendor "Sendmail" for product "Sendmail" and version "8.12.8"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.9
Search vendor "Sendmail" for product "Sendmail" and version "8.12.9"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.10
Search vendor "Sendmail" for product "Sendmail" and version "8.12.10"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.12.11
Search vendor "Sendmail" for product "Sendmail" and version "8.12.11"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.13.0
Search vendor "Sendmail" for product "Sendmail" and version "8.13.0"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.13.1
Search vendor "Sendmail" for product "Sendmail" and version "8.13.1"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.13.1.2
Search vendor "Sendmail" for product "Sendmail" and version "8.13.1.2"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.13.2
Search vendor "Sendmail" for product "Sendmail" and version "8.13.2"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.13.3
Search vendor "Sendmail" for product "Sendmail" and version "8.13.3"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.13.4
Search vendor "Sendmail" for product "Sendmail" and version "8.13.4"
-
Affected
Sendmail
Search vendor "Sendmail"
Sendmail
Search vendor "Sendmail" for product "Sendmail"
8.13.5
Search vendor "Sendmail" for product "Sendmail" and version "8.13.5"
-
Affected