|
|
Log in / Subscribe / Register

fetchmail: denial of service

Package(s):fetchmail CVE #(s):CVE-2011-1947
Created:June 7, 2011 Updated:June 21, 2011
Description: From the Mandriva advisory:

fetchmail 5.9.9 through 6.3.19 does not properly limit the wait time after issuing a (1) STARTTLS or (2) STLS request, which allows remote servers to cause a denial of service (application hang) by acknowledging the request but not sending additional packets.

Alerts:
Fedora FEDORA-2011-8021 fetchmail 2011-06-08
Fedora FEDORA-2011-8059 fetchmail 2011-06-08
Fedora FEDORA-2011-8011 fetchmail 2011-06-08
Slackware SSA:2011-171-01 fetchmail 2011-06-21
Mandriva MDVSA-2011:107 fetchmail 2011-06-07

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds