Secunia Logo
 
CVE Reference: CVE-2006-1173
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-1173

Description:
Sendmail before 8.13.7 allows remote attackers to cause a denial of service via deeply nested, malformed multipart MIME messages that exhaust the stack during the recursive mime8to7 function for performing 8-bit to 7-bit conversion, which prevents Sendmail from delivering queued messages and might lead to disk consumption by core dump files.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/27128

SUSE
  http://lists.suse.com/archive/suse-security-announce/2006-Jun/0006.html

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-102460-1

ST
  1016295

SLACKWARE
  http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.631382

SGI

SAID
  Secunia Advisory: SA15779
  Secunia Advisory: SA20473
  Secunia Advisory: SA20641
  Secunia Advisory: SA20650
  Secunia Advisory: SA20651
  Secunia Advisory: SA20654
  Secunia Advisory: SA20673
  Secunia Advisory: SA20675
  Secunia Advisory: SA20679
  Secunia Advisory: SA20683
  Secunia Advisory: SA20684
  Secunia Advisory: SA20694
  Secunia Advisory: SA20726
  Secunia Advisory: SA20782
  Secunia Advisory: SA21042
  Secunia Advisory: SA21160
  Secunia Advisory: SA21327
  Secunia Advisory: SA21612
  Secunia Advisory: SA21647

REDHAT
  http://www.redhat.com/support/errata/RHSA-2006-0515.html

OSVDB
  26197

OPENBSD
  http://www.openbsd.org/errata38.html#sendmail2

MANDRIVA
  http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:104

HP
  http://www.securityfocus.com/archive/1/archive/1/442939/100/0/threaded
  http://itrc.hp.com/service/cki/docDisplay.do?docId=c00692635

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200606-19.xml

FREEBSD

DEBIAN
  http://www.debian.org/security/2006/dsa-1155

CONFIRM
  http://support.avaya.com/elmodocs2/security/ASA-2006-148.htm
  http://www.f-secure.com/security/fsc-2006-5.shtml
  http://www.fortinet.com/FortiGuardCenter/advisory/FG-2006-18.html
  http://www.sendmail.com/security/advisories/SA-200605-01.txt.asc

CERT-VN
  146718

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/440744/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/438330/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/438241/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/437928/100/0/threaded

BID
  18433

AIXAPAR
  http://www-1.ibm.com/support/search.wss?rs=0&q=IY85930&apar=only
  http://www-1.ibm.com/support/search.wss?rs=0&q=IY85415&apar=only


Return to the previous page.