CVE-2006-0058
Published Mar 22, 2006
Last updated 6 years ago
Overview
- Description
- Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a way that causes the setjmp and longjmp function calls to be interrupted and modify unexpected memory locations.
- Source
- cret@cert.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.6
- Impact score
- 10
- Exploitability score
- 4.9
- Vector string
- AV:N/AC:H/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sendmail:sendmail:8.13.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B4E0D099-C149-4923-A06C-200A23CEA943" }, { "criteria": "cpe:2.3:a:sendmail:sendmail:8.13.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "01B75BCD-9187-4DB0-903D-5F73429AEE78" }, { "criteria": "cpe:2.3:a:sendmail:sendmail:8.13.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F7DB5E2A-0E79-45DF-BD85-FD216A970771" }, { "criteria": "cpe:2.3:a:sendmail:sendmail:8.13.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D20FAC60-445E-4847-B5DE-8ACDDA55E1CA" }, { "criteria": "cpe:2.3:a:sendmail:sendmail:8.13.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9962F81C-A08C-4F8E-A07C-4F4B5C441EA5" }, { "criteria": "cpe:2.3:a:sendmail:sendmail:8.13.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A38C234D-EF75-4A96-A0FD-E1DDDADAC1BC" } ], "operator": "OR" } ] } ]