CVE-2006-6761: Buffer Overflow
Published Dec 27, 2006
·Updated
Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbitrary code via a long argument to the SUBSCRIBE command.
Affected Software
6 affected components
Novell Netmail=3.5.2-a
Novell Netmail=3.5.2-b
Novell Netmail=3.5.2-c
Novell Netmail=3.5.2-c1
Novell Netmail=3.5.2-d
Novell Netmail=3.5.2-e-ftfl
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 27, 2006
CVE Published
02:28 AM
Data Sourced
via NVD·02:28 AM
RemedyDescriptionSeverityAffected Software
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-6761?
CVE-2006-6761 has a critical severity level due to its potential for remote code execution.
2
How do I fix CVE-2006-6761?
To mitigate CVE-2006-6761, upgrade Novell NetMail to version 3.52e FTF2 or later.
3
Who is affected by CVE-2006-6761?
CVE-2006-6761 affects remote authenticated users of Novell NetMail versions prior to 3.52e FTF2.
4
What type of vulnerability is CVE-2006-6761?
CVE-2006-6761 is a stack-based buffer overflow vulnerability.
5
What is the impact of exploiting CVE-2006-6761?
Exploitation of CVE-2006-6761 allows an attacker to execute arbitrary code on the affected system.