CVE-2005-2878

GNU Mailutils 0.6 - RCE

Title source: llm

Description

Format string vulnerability in search.c in the imap4d server in GNU Mailutils 0.6 allows remote authenticated users to execute arbitrary code via format string specifiers in the SEARCH command.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Xpl017Elz · cremotelinux
https://www.exploit-db.com/exploits/3787
exploitdb WORKING POC VERIFIED
by Angelo Rosiello · cremotebsd
https://www.exploit-db.com/exploits/1234
exploitdb WORKING POC VERIFIED
by Clément Lecigne · cremotelinux
https://www.exploit-db.com/exploits/1209

Scores

EPSS 0.5714
EPSS Percentile 98.2%

Details

Status published
Products (1)
gnu/mailutils 0.6
Published Sep 13, 2005
Tracked Since Feb 18, 2026