15442Third-party advisory
http://secunia.com/advisories/15442 CVE-2005-1523
GNU Mailutils imap4d 0.6 - Remote Format String
Record summary
CVE-2005-1523 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Format string vulnerability in imap4d server in GNU Mailutils 0.5 and 0.6, and other versions before 0.6.90, allows remote attackers to execute arbitrary code via format string specifiers in the command tag for IMAP commands.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBGNU Mailutils imap4d 0.6 - Remote Format StringExploitDB exploitby CoKiNot analyzed1 file
References
61014052vdb entry
http://securitytracker.com/id?1014052 DSA-732Vendor advisory
http://www.debian.org/security/2005/dsa-732 20050525 GNU Mailutils 0.6 imap4d Format String VulnerabilityThird-party advisory
http://www.idefense.com/application/poi/display?id=246&type=vulnerabilities 13764vdb entry
http://www.securityfocus.com/bid/13764 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2005-1523