CVE-2004-1098

MIMEDefang - Virus Scanning Bypass via Empty Boundary String in Content-Type Header

Title source: llm
STIX 2.1

Description

MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header.

References (5)

Core 5
Core References
Vendor Advisory vendor-advisory x_refsource_mandrake
http://www.mandriva.com/security/advisories?name=MDKSA-2004:123
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17940
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/11563
Patch, Vendor Advisory vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200411-06.xml

Scores

EPSS 0.0045
EPSS Percentile 63.6%

Details

Status published
Products (23)
mandrakesoft/mandrake_linux 9.2 (2 CPE variants)
mandrakesoft/mandrake_linux 10.0 (2 CPE variants)
mandrakesoft/mandrake_linux 10.1 (2 CPE variants)
mandrakesoft/mandrake_linux_corporate_server 2.1 (2 CPE variants)
roaring_penguin/mimedefang 2.4
roaring_penguin/mimedefang 2.14
roaring_penguin/mimedefang 2.20
roaring_penguin/mimedefang 2.21
roaring_penguin/mimedefang 2.38
roaring_penguin/mimedefang 2.39
... and 13 more
Published Jan 10, 2005
Tracked Since Feb 18, 2026