CVE-2006-6762: Medium severity novell netmail vulnerability
Published Dec 27, 2006
·Updated
The IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to cause a denial of service via an APPEND command with a single "(" (parenthesis) in the argument.
Affected Software
6 affected components
Novell Netmail=3.5.2-a
Novell Netmail=3.5.2-b
Novell Netmail=3.5.2-c
Novell Netmail=3.5.2-c1
Novell Netmail=3.5.2-d
Novell Netmail=3.5.2-e-ftfl
Remediation
Patch Available
Patch Available
Event History
Dec 27, 2006
CVE Published
02:28 AM
Data Sourced
via NVD·02:28 AM
RemedyDescriptionSeverityAffected Software
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-6762?
CVE-2006-6762 is classified as a denial of service vulnerability.
2
How do I fix CVE-2006-6762?
To remediate CVE-2006-6762, upgrade to Novell NetMail version 3.52e FTF2 or later.
3
Who is affected by CVE-2006-6762?
CVE-2006-6762 affects users of Novell NetMail versions 3.5.2 and earlier.
4
What type of attack does CVE-2006-6762 involve?
CVE-2006-6762 involves a remote authenticated denial of service attack through a malformed APPEND command.
5
What versions of Novell NetMail are vulnerable to CVE-2006-6762?
Novell NetMail versions 3.5.2-c, 3.5.2-d, 3.5.2-b, 3.5.2-c1, 3.5.2-a, and 3.5.2-e-ftfl are vulnerable to CVE-2006-6762.