CVE-2014-2567
Published Mar 21, 2014
Last updated 11 years ago
Overview
- Description
- The OpenConnectionTask::handleStateHelper function in Imap/Tasks/OpenConnectionTask.cpp in Trojita before 0.4.1 allows man-in-the-middle attackers to trigger use of cleartext for saving a message into a (1) sent or (2) draft folder via a PREAUTH response that prevents later use of the STARTTLS command.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:trojita_project:trojita:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B33377B3-F956-4D95-B09F-14B738B5E6A8", "versionEndIncluding": "0.4" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2DDCF322-D6C2-4342-983D-7B5CD9E73B57" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7CFAABFE-6021-4D55-98CC-D2A2FB3A4FD2" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.2.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E812E533-EBAC-411E-821B-6120939039AE" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.2.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6CC990A2-E129-4DCB-ADBB-223CE465143A" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.2.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "07955D72-95B7-493D-8169-184AD1B240B7" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.2.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "73772866-A8E1-451D-8EF0-814730B5D42B" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.2.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "582A4F36-D73E-41E3-B5EC-5EC994A2B88E" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B68EBF7-0535-4631-9083-A597C6FDDCD9" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.3.90:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14770E73-6416-4F34-B7C8-69816F74F8C9" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.3.91:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2441D707-1157-4011-A65D-0D9AC25E02A2" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.3.92:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D73B2190-921B-4D8F-BF84-BDCB84828CEF" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.3.93:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C104B37F-F76A-48E3-A0ED-647D0A136574" }, { "criteria": "cpe:2.3:a:trojita_project:trojita:0.3.96:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1323341B-AE86-41D2-9A24-B3A449ED64C4" } ], "operator": "OR" } ] } ]