CVE-2006-2941: Medium severity gnu mailman vulnerability
Published Sep 6, 2006
·Updated
Mailman before 2.1.9rc1 allows remote attackers to cause a denial of service via unspecified vectors involving "standards-breaking RFC 2231 formatted headers".
Affected Software
12 affected components
GNU Mailman=2.1
GNU Mailman=2.1.1
GNU Mailman=2.1.1-beta1
GNU Mailman=2.1.2
GNU Mailman=2.1.3
GNU Mailman=2.1.4
GNU Mailman=2.1.5
GNU Mailman=2.1.5.8
GNU Mailman=2.1.6
GNU Mailman=2.1.7
GNU Mailman=2.1.8
GNU Mailman=2.1b1
Remediation
Patch Available
Event History
Sep 6, 2006
CVE Published
12:04 AM
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2941?
CVE-2006-2941 is classified as a denial of service vulnerability.
2
How do I fix CVE-2006-2941?
To fix CVE-2006-2941, upgrade Mailman to version 2.1.9rc1 or later.
3
Which versions of Mailman are affected by CVE-2006-2941?
CVE-2006-2941 affects all Mailman versions prior to 2.1.9rc1.
4
What type of attack does CVE-2006-2941 involve?
CVE-2006-2941 involves remote attackers exploiting poorly formatted RFC 2231 headers.
5
Is there a workaround for CVE-2006-2941?
There is no documented workaround for CVE-2006-2941, so upgrading is recommended.