CVE-2008-5006

smtp.c in the c-client library in University of Washington IMAP Toolkit 2007b allows remote SMTP servers to cause a denial of service (NULL pointer dereference and application crash) by responding to the QUIT command with a close of the TCP connection instead of the expected 221 response code.
Configurations

Configuration 1 (hide)

cpe:2.3:a:university_of_washington:imap_toolkit:2007b:*:*:*:*:*:*:*

History

21 Nov 2024, 00:53

Type Values Removed Values Added
References () http://secunia.com/advisories/33142 - () http://secunia.com/advisories/33142 -
References () http://www.debian.org/security/2008/dsa-1685 - () http://www.debian.org/security/2008/dsa-1685 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2009:146 - () http://www.mandriva.com/security/advisories?name=MDVSA-2009:146 -
References () http://www.openwall.com/lists/oss-security/2008/11/03/5 - () http://www.openwall.com/lists/oss-security/2008/11/03/5 -
References () http://www.securityfocus.com/bid/32280 - () http://www.securityfocus.com/bid/32280 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/46604 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/46604 -

Information

Published : 2008-11-10 14:12

Updated : 2024-11-21 00:53


NVD link : CVE-2008-5006

Mitre link : CVE-2008-5006

CVE.ORG link : CVE-2008-5006


JSON object : View

Products Affected

university_of_washington

  • imap_toolkit
CWE
CWE-399

Resource Management Errors

NVD-CWE-noinfo