VDB

CVE-2006-1173

CVE-2006-1173 PUBLISHED CVSS 5 MEDIUM

Sendmail before 8.13.7 allows remote attackers to cause a denial of service via deeply nested, malformed multipart MIME messages that exhaust the stack during the recursive mime8to7 function for performing 8-bit to 7-bit conversion, which prevents Sendmail from delivering queued messages and might lead to disk consumption by core dump files.

EPSS 5.27% · 92.3th percentile

Risk Scores

CVSS 2.0
5
EPSS Score
5.27%
92.3th percentile

Affected Products

VendorProductVersions
sendmailsendmail8.13.1.2, 0, 8.8.8
n/an/a*

Timeline

  • Jun 7, 2006 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • Jul 13, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Dec 19, 2022 EPSS Score
  • Feb 10, 2023 EPSS Score
  • Apr 4, 2023 EPSS Score
  • Apr 11, 2023 EPSS Score
  • May 27, 2023 EPSS Score
  • Jul 19, 2023 EPSS Score
  • Aug 3, 2023 EPSS Score

References

…and 37 more

Open in Interactive Console →
$ Console Community · 100/wk Open console ›