CVE-2005-1513

Description

Integer overflow in the stralloc_readyplus function in qmail, when running on 64 bit platforms with a large amount of virtual memory, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large SMTP request.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
9.483

Associated Vulnerability

VulnerabilityOS Platform
a secure, reliable, efficient, simple message transfer agent (USN-4621-1) qmail_1.06-6.2~deb10u1build0.16.04.1_i386.debLinux
a secure, reliable, efficient, simple message transfer agent (USN-4621-1) qmail_1.06-6.2~deb10u1build0.16.04.1_amd64.debLinux
a secure, reliable, efficient, simple message transfer agent (USN-4621-1) qmail_1.06-6.2~deb10u1build0.18.04.1_i386.debLinux
a secure, reliable, efficient, simple message transfer agent (USN-4621-1) qmail_1.06-6.2~deb10u1build0.18.04.1_amd64.debLinux
a secure, reliable, efficient, simple message transfer agent (USN-4556-1) qmail_1.06-6.2~deb10u1build0.20.04.1_amd64.debLinux
a secure, reliable, efficient, simple message transfer agent (USN-4556-1) qmail-uids-gids_1.06-6.2~deb10u1build0.20.04.1_all.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234