VDB
CVE-2002-1175
CVE-2002-1175
PUBLISHED
Reported by mitre · Published October 1, 2002
The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| n/a | n/a | n/a, *, * |
Timeline
- Oct 1, 2002 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Apr 30, 2022 CVE Updated
- May 21, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
References
- MDKSA-2002:063 vendor-advisoryx_refsource_MANDRAKE
- 20020929 Advisory 03/2002: Fetchmail remote vulnerabilities mailing-listx_refsource_BUGTRAQ
- RHSA-2002:215 vendor-advisoryx_refsource_REDHAT
- fetchmail-multidrop-bo(10203) vdb-entryx_refsource_XF
- CLA-2002:531 vendor-advisoryx_refsource_CONECTIVA
- ESA-20021003-023 vendor-advisoryx_refsource_ENGARDE
- 5826 vdb-entryx_refsource_BID
- DSA-171 vendor-advisoryx_refsource_DEBIAN