Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2005-3573
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-3573

Description:
Scrubber.py in Mailman 2.1.5-8 does not properly handle UTF8 character encodings in filenames of e-mail attachments, which allows remote attackers to cause a denial of service (application crash).

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/23139

UBUNTU
  http://www.ubuntu.com/usn/usn-242-1

TRUSTIX
  http://www.trustix.org/errata/2006/0012/

SUSE
  http://lists.suse.com/archive/suse-security-announce/2006-Jan/0003.html

ST
  1015735

SGI

SAID
  Secunia Advisory: SA19532
  Secunia Advisory: SA18456
  Secunia Advisory: SA19196
  Secunia Advisory: SA19167
  Secunia Advisory: SA18612
  Secunia Advisory: SA18503
  Secunia Advisory: SA17874
  Secunia Advisory: SA17511

REDHAT
  http://www.redhat.com/support/errata/RHSA-2006-0204.html

OSVDB
  20819

MLIST
  http://mail.python.org/pipermail/mailman-users/2005-September/046523.html

MANDRIVA
  http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2005:222

DEBIAN
  http://www.debian.org/security/2006/dsa-955

CONFIRM
  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=327732

BID
  15408


Return to the previous page.