CVE-2005-4153: High severity GNU Mailman vulnerability
Published Dec 11, 2005
·Updated
Mailman 2.1.4 through 2.1.6 allows remote attackers to cause a denial of service via a message that causes the server to "fail with an Overflow on bad date data in a processed message," a different vulnerability than CVE-2005-3573.
Affected Software
3 affected components
GNU Mailman=2.1.4
GNU Mailman=2.1.5
GNU Mailman=2.1.6
Remediation
Event History
Dec 11, 2005
CVE Published
02:03 AM
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-4153?
CVE-2005-4153 has a high severity level, as it allows remote attackers to cause a denial of service.
2
How do I fix CVE-2005-4153?
To fix CVE-2005-4153, upgrade Mailman to version 2.1.7 or later.
3
Which versions of Mailman are affected by CVE-2005-4153?
CVE-2005-4153 affects Mailman versions 2.1.4 through 2.1.6.
4
Can CVE-2005-4153 lead to data loss?
CVE-2005-4153 primarily causes a denial of service rather than direct data loss.
5
What type of attacks are enabled by CVE-2005-4153?
CVE-2005-4153 enables attackers to send specially crafted messages to crash the Mailman server.