CVE-2003-0991: Medium severity GNU Mailman vulnerability
Unknown vulnerability in the mail command handler in Mailman before 2.0.14 allows remote attackers to cause a denial of service (crash) via malformed e-mail commands.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0991?
CVE-2003-0991 has a severity rating indicating it can lead to a denial of service due to crashing the Mailman application.
How do I fix CVE-2003-0991?
To fix CVE-2003-0991, upgrade Mailman to version 2.0.14 or later, which addresses the vulnerability.
Which versions of Mailman are affected by CVE-2003-0991?
CVE-2003-0991 affects multiple versions of Mailman prior to 2.0.14, including version 1.0, 1.1, and several 2.0.x versions.
What type of attack does CVE-2003-0991 involve?
CVE-2003-0991 involves a remote denial of service attack initiated via malformed email commands sent to the Mailman handler.
Is it safe to use Mailman versions before 2.0.14 after CVE-2003-0991?
Using Mailman versions before 2.0.14 is not safe due to the vulnerability identified in CVE-2003-0991, as they are susceptible to denial of service attacks.