CVE-2011-0411
postfix: SMTP commands injection during plaintext to TLS session switch
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The STARTTLS implementation in Postfix 2.4.x before 2.4.16, 2.5.x before 2.5.12, 2.6.x before 2.6.9, and 2.7.x before 2.7.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack.
La implementación de STARTTLS de Postfix 2.4.x anteriores a 2.4.16, 2.5.x anteriores a 2.5.12, 2.6.x anteriores a 2.6.9, y 2.7.x anteriores a 2.7.3 no restringe apropiadamente el buffering de I/O, lo que permite a atacantes man-in-the-middle insertar comandos en sesiones SMTP encriptadas enviando un comando en texto claro que es procesado después de que TLS es iniciado. Relacionado con un ataque de "inyección de comandos de texto en claro".
CVSS Scores
SSVC
- Decision:-
Timeline
- 2011-01-11 CVE Reserved
- 2011-03-07 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (26)
URL | Tag | Source |
---|---|---|
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705 | X_refsource_confirm | |
http://secunia.com/advisories/43874 | Third Party Advisory | |
http://securitytracker.com/id?1025179 | Vdb Entry | |
http://support.apple.com/kb/HT5002 | X_refsource_confirm | |
http://www.kb.cert.org/vuls/id/555316 | Third Party Advisory | |
http://www.kb.cert.org/vuls/id/MORO-8ELH6Z | Us Government Resource | |
http://www.openwall.com/lists/oss-security/2021/08/10/2 | Mailing List | |
http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html | X_refsource_confirm | |
http://www.osvdb.org/71021 | Vdb Entry | |
http://www.securityfocus.com/bid/46767 | Vdb Entry | |
http://www.vupen.com/english/advisories/2011/0752 | Vdb Entry | |
http://www.vupen.com/english/advisories/2011/0891 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/65932 | Vdb Entry |
URL | Date | SRC |
---|---|---|
http://www.postfix.org/CVE-2011-0411.html | 2024-08-06 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4 Search vendor "Postfix" for product "Postfix" and version "2.4" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.0 Search vendor "Postfix" for product "Postfix" and version "2.4.0" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.1 Search vendor "Postfix" for product "Postfix" and version "2.4.1" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.2 Search vendor "Postfix" for product "Postfix" and version "2.4.2" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.3 Search vendor "Postfix" for product "Postfix" and version "2.4.3" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.4 Search vendor "Postfix" for product "Postfix" and version "2.4.4" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.5 Search vendor "Postfix" for product "Postfix" and version "2.4.5" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.6 Search vendor "Postfix" for product "Postfix" and version "2.4.6" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.7 Search vendor "Postfix" for product "Postfix" and version "2.4.7" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.8 Search vendor "Postfix" for product "Postfix" and version "2.4.8" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.9 Search vendor "Postfix" for product "Postfix" and version "2.4.9" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.10 Search vendor "Postfix" for product "Postfix" and version "2.4.10" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.11 Search vendor "Postfix" for product "Postfix" and version "2.4.11" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.12 Search vendor "Postfix" for product "Postfix" and version "2.4.12" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.13 Search vendor "Postfix" for product "Postfix" and version "2.4.13" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.14 Search vendor "Postfix" for product "Postfix" and version "2.4.14" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.4.15 Search vendor "Postfix" for product "Postfix" and version "2.4.15" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.0 Search vendor "Postfix" for product "Postfix" and version "2.5.0" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.1 Search vendor "Postfix" for product "Postfix" and version "2.5.1" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.2 Search vendor "Postfix" for product "Postfix" and version "2.5.2" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.3 Search vendor "Postfix" for product "Postfix" and version "2.5.3" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.4 Search vendor "Postfix" for product "Postfix" and version "2.5.4" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.5 Search vendor "Postfix" for product "Postfix" and version "2.5.5" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.6 Search vendor "Postfix" for product "Postfix" and version "2.5.6" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.7 Search vendor "Postfix" for product "Postfix" and version "2.5.7" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.8 Search vendor "Postfix" for product "Postfix" and version "2.5.8" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.9 Search vendor "Postfix" for product "Postfix" and version "2.5.9" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.10 Search vendor "Postfix" for product "Postfix" and version "2.5.10" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.5.11 Search vendor "Postfix" for product "Postfix" and version "2.5.11" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6 Search vendor "Postfix" for product "Postfix" and version "2.6" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.0 Search vendor "Postfix" for product "Postfix" and version "2.6.0" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.1 Search vendor "Postfix" for product "Postfix" and version "2.6.1" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.2 Search vendor "Postfix" for product "Postfix" and version "2.6.2" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.3 Search vendor "Postfix" for product "Postfix" and version "2.6.3" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.4 Search vendor "Postfix" for product "Postfix" and version "2.6.4" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.5 Search vendor "Postfix" for product "Postfix" and version "2.6.5" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.6 Search vendor "Postfix" for product "Postfix" and version "2.6.6" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.7 Search vendor "Postfix" for product "Postfix" and version "2.6.7" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.6.8 Search vendor "Postfix" for product "Postfix" and version "2.6.8" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.7.0 Search vendor "Postfix" for product "Postfix" and version "2.7.0" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.7.1 Search vendor "Postfix" for product "Postfix" and version "2.7.1" | - |
Affected
| ||||||
Postfix Search vendor "Postfix" | Postfix Search vendor "Postfix" for product "Postfix" | 2.7.2 Search vendor "Postfix" for product "Postfix" and version "2.7.2" | - |
Affected
|