5.9
CVSSv3

CVE-2013-4584

Published: 15/11/2019 Updated: 20/12/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Perdition prior to 2.2 may have weak security when handling outbound connections, caused by an error in the STARTTLS IMAP and POP server. ssl_outgoing_ciphers not being applied to STARTTLS connections

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

horms perdition

debian debian linux 8.0

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Debian Bug report logs - #729028 perdition: CVE-2013-4584: ssl_outgoing_ciphers not applied to STARTTLS connections Package: perdition; Maintainer for perdition is Simon Horman <horms@debianorg>; Source for perdition is src:perdition (PTS, buildd, popcon) Reported by: Daniel Kahn Gillmor <dkg@fifthhorsemannet> Date ...