First published: Thu May 26 2005(Updated: )
Buffer overflow in the header_get_field_name function in header.c for GNU Mailutils 0.5 and 0.6, and other versions before 0.6.90, allows remote attackers to execute arbitrary code via a crafted e-mail.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Mailutils | =0.6 | |
GNU Mailutils | =0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2005-1520 is considered high due to its potential to allow remote code execution.
To fix CVE-2005-1520, upgrade GNU Mailutils to version 0.6.90 or later.
CVE-2005-1520 affects GNU Mailutils versions 0.5 and 0.6, and other versions prior to 0.6.90.
CVE-2005-1520 is a buffer overflow vulnerability located in the header_get_field_name function.
Yes, CVE-2005-1520 can be exploited remotely via a crafted email.