5.1
CVSSv2

CVE-2005-3354

Published: 20/11/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 454
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in the ldif_get_line function in ldif.c of Sylpheed prior to 2.1.6 allows user-assisted malicious users to execute arbitrary code by having local users import LDIF files with long lines.

Vulnerable Product Search on Vulmon Subscribe to Product

sylpheed sylpheed 0.9.5

sylpheed sylpheed 0.9.6

sylpheed sylpheed 1.0.3

sylpheed sylpheed 1.0.4

sylpheed sylpheed 2.1.2

sylpheed sylpheed 2.1.3

sylpheed sylpheed 0.9.7

sylpheed sylpheed 0.9.8

sylpheed sylpheed 2.0

sylpheed sylpheed 2.0.1

sylpheed sylpheed 2.1.4

sylpheed sylpheed 2.1.5

sylpheed sylpheed 0.9.11

sylpheed sylpheed 0.9.12

sylpheed sylpheed 0.9.4

sylpheed sylpheed 1.0.1

sylpheed sylpheed 1.0.2

sylpheed sylpheed 2.1

sylpheed sylpheed 2.1.1

sylpheed sylpheed 0.8.11

sylpheed sylpheed 0.9.10

sylpheed sylpheed 0.9.9

sylpheed sylpheed 1.0.0

sylpheed sylpheed 2.0.2

sylpheed sylpheed 2.0.3

Vendor Advisories

Kurt Fitzner discovered that the NBD (network block device) server did not correctly verify the maximum size of request packets By sending specially crafted large request packets, a remote attacker who is allowed to access the server could exploit this to execute arbitrary code with root privileges ...
Kurt Fitzner discovered that the NBD (network block device) server did not correctly verify the maximum size of request packets By sending specially crafted large request packets, a remote attacker who is allowed to access the server could exploit this to execute arbitrary code with root privileges ...
Colin Leroy discovered several buffer overflows in a number of importer routines in sylpheed, a light-weight e-mail client with GTK+, that could lead to the execution of arbitrary code The following matrix explains which versions fix this vulnerability   old stable (woody) stable (sarge) unstable (sid) sylpheed ...