CVE-2012-3482
Published Dec 21, 2012
Last updated 12 years ago
Overview
- Description
- Fetchmail 5.0.8 through 6.3.21, when using NTLM authentication in debug mode, allows remote NTLM servers to (1) cause a denial of service (crash and delayed delivery of inbound mail) via a crafted NTLM response that triggers an out-of-bounds read in the base64 decoder, or (2) obtain sensitive information from memory via an NTLM Type 2 message with a crafted Target Name structure, which triggers an out-of-bounds read.
- Source
- secalert@redhat.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5.8
- Impact score
- 4.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:N/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF18219F-0406-4D46-90DE-EA2A17C8EFF7" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "87B56DFD-BDA9-4D8B-BE54-BF59B762D574" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "33EA0CA8-468F-4A94-8DA3-5D820AB65973" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA21C847-57ED-4E7D-9366-6038467D9080" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0450BD04-15D2-4122-A210-6225B89BDA7F" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "18428805-AEB2-4BA4-9762-906B59CE74D3" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFCCBB15-DFFE-4A57-A029-E57707D15E04" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0427B5C8-265C-47C3-9BAB-B2A0EAA1DEE5" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "89A4B962-BE5B-471C-83EF-674525C5AE83" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7166ECCB-54FB-44EA-BA80-4D2AAF494AF2" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6B309C89-99E2-4F0B-976C-95E44A45ADC5" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3DE7EE7-F627-4955-8D95-1F00F1F85C7D" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.3.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D549098D-FE16-4BCB-91C4-D71A8C8D2E9F" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "57BFA165-6E2E-49AF-9E2D-3D8923CF36C7" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.4.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F5C67DFF-A1BE-4486-A11F-CD3729927220" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.4.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D365E6E-8777-4084-BEC8-7CBF4997D976" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.4.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "20C4FF28-0DBA-4995-8252-2D62FF896BC4" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F80C6B9B-AFCE-46A1-8DEF-51C1B526EB18" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.5.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BF667DB5-F41E-4E73-A01F-4EC3F60BAD0C" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.5.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2B144FA-A901-4CDF-AC3D-7F5E820B7A4B" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.5.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "96774635-9A12-4DAB-BCF6-2D678F244CE9" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.5.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EFD2EE7A-36CB-4A26-8EEB-DACA2864D921" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3898EBC-75A9-4DDD-A0AF-2CDEC72DAE4F" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4267DCE8-985C-416D-A6B7-536585E5A573" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.7.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "50E63EDF-FF0A-447C-A3FC-7BA2414C15CA" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.7.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61DDD4A1-6185-41B6-A715-4C70F0AA2631" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B10A7E3C-07CD-48A6-9075-5314B4E1EEAB" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "319955A4-27A8-46FF-ACE7-97E6DF27B2DD" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "925CF3DD-682B-40E6-900C-23F784CD9239" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "16366780-611E-4217-A614-EBA01421D148" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "43AEA36F-E730-4305-9CB6-738A7152F02E" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B9536BA-6334-4957-9632-6D64365B88AB" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F52FA32B-8048-4FD7-9D20-20DC5E52098B" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9FA92DF1-3AAD-46AC-A9E4-E9386C977818" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "837D66DB-F9CB-41F1-A091-BCFBAC2F45B6" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74D12B67-6E66-419A-A28F-6306402931EB" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.8.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A71FCBED-B25D-48E3-916C-FBA9E0DE8D12" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A17995E-DCAF-465A-8ABD-F1EA0D538784" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93D03D78-C56E-4189-97FC-916C918EDFEE" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "19A66C77-041F-4A12-8A36-233A6B50641C" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.9.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C945059C-EF39-486D-A804-FBB8704AB927" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.9.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1258CA65-FBC1-4848-A9E5-A8F5E5D6FBD5" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.9.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A91C6418-41F0-46EB-ACFC-FCE907F5AA87" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:5.9.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0C020534-7596-496C-B9B0-739F58F6F4EF" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0A77D40C-6FF5-42BD-9EFB-B532824D7606" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F04C6A76-2718-4DBA-8972-A3EECDDB1A17" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38ACD96E-5582-4ED0-BBB1-C891094D8217" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "264386DA-747F-492C-B660-D49BE9DB7139" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DC4066AC-BE10-4189-86F6-BF94443738DF" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C25A146-50D5-4BA2-ABA2-20BF8784D7DA" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "72E76256-997F-4229-9B03-7BC3074F359D" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7A717C50-2C5A-4CD1-B2E6-8CDF450940CE" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61F908FF-9986-4F71-B0B6-D6A86555EF56" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B0C1F99C-A246-40D3-B84A-5D11FF24AC1B" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.5.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "028F7F83-AF15-443B-A7DB-4E695E62EAFB" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.5.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B418C3CE-E6E6-401D-AD83-5BB181009A7F" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.6:pre4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8BF06FD2-0A4C-4557-B8EF-F0F021179498" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.6:pre8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38C949C2-07A0-4FE4-8FBF-86215CB999CF" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.6:pre9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "88B23630-79DD-4B69-BB01-286193BA562E" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.9:rc10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FE21564-68C0-4765-BA40-9D3046C4CB14" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.9:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "208102ED-6F22-44C5-BAF1-FD85EACF208F" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.9:rc4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C1CF7767-EB24-44E2-8E59-B4DBC99AFD23" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.9:rc5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF3D6D4C-5FD8-4EE1-A34A-99D397F09E85" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.9:rc7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D63D88C1-B201-4D48-9659-5802DC4FD3EA" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.9:rc8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "16463B23-E884-467E-9F63-6B57EED39856" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.2.9:rc9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9F2C03AF-666D-4AF6-BC69-F8B081EB41AA" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "84F90AFA-4B13-46A0-89D7-4065300C94C4" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5DAD0F05-8B55-43ED-89D5-61A19F41EDFF" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "99053698-7F8B-4E71-8647-1A8B0DF7CEB1" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9314F22D-22A8-4374-A2BF-3C64CF1F69BC" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "816E9640-A932-4E2F-9793-689F80D2AA89" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D09BB43-6CBA-499B-91D1-BA256A65E40D" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ABE76611-08CE-4D85-B57A-021909835A81" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.6:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B98AFEDF-2BAB-4588-94E0-35AEA5F1B514" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.6:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E8BAB5B-4DBC-4D05-B5E2-591573BC05FF" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.6:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "02F6E729-A2F2-42AC-A941-F57A0A4E84A0" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.6:rc4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4143D519-4B49-4E71-8686-FC6A095F0999" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.6:rc5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "387ADB82-4FAD-44DA-ABF2-2F4645C4F1E4" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CED4FBCB-B6DF-429D-871D-2A9F7F59E63B" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "237F86BD-82CD-4A37-BF64-F103B1304F0C" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "667847D9-58DD-4693-B544-593AC6D7746D" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.9:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12BA2E29-5547-45F5-BC46-1A7B4A222055" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C44EA07A-D8A9-4E43-AE2D-B9E41944CB07" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9882EBF-72D0-4C4F-99BA-929418B5D86B" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE474E7E-EEE8-45E4-A995-A437CE7C08CD" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2F96F2F2-B6CC-4138-8F9C-4CB906EDACDD" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "22D580D8-FE6D-40E9-88A5-751A9C8CBAA7" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C7E909A-F8F7-4FB1-8659-41A47C9B7C5A" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FDBC29B9-EC76-4F2C-BD00-A57C0D4B99EB" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4C8896BE-EF89-4F2C-9356-96745005E3AA" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39E249FA-4A13-4945-A632-0A8D24CE594A" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6126F184-8470-49B7-A801-F671DEF24247" }, { "criteria": "cpe:2.3:a:fetchmail:fetchmail:6.3.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "66992896-2958-47CA-A70A-A8B0B9B5FBA6" } ], "operator": "OR" } ] } ]