CVE-2006-2191: High severity GNU Mailman vulnerability
Published Sep 19, 2006
·Updated
DISPUTED Format string vulnerability in Mailman before 2.1.9 allows attackers to execute arbitrary code via unspecified vectors. NOTE: the vendor has disputed this vulnerability, stating that it is "unexploitable."
Affected Software
1 affected component
GNU Mailman<=2.1.8
Remediation
Event History
Sep 19, 2006
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Disputed
09:07 PM
Frequently Asked Questions
1
What is the severity of CVE-2006-2191?
The severity of CVE-2006-2191 is disputed, with the vendor stating it is unexploitable.
2
How do I fix CVE-2006-2191?
To fix CVE-2006-2191, upgrade Mailman to version 2.1.9 or later.
3
What versions of Mailman are affected by CVE-2006-2191?
Mailman versions prior to 2.1.9, specifically up to 2.1.8, are affected by CVE-2006-2191.
4
What type of vulnerability is CVE-2006-2191?
CVE-2006-2191 is a format string vulnerability that may allow arbitrary code execution.
5
What should I know about the vendor's response to CVE-2006-2191?
The vendor has disputed the existence of an exploitable vulnerability in CVE-2006-2191.