Double Precision Incorporated

Courier Mta

5 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.56%
  • Published 30.05.2006 19:02:00
  • Last modified 03.04.2025 01:03:51

libs/comverp.c in Courier MTA before 0.53.2 allows attackers to cause a denial of service (CPU consumption) via unknown vectors involving usernames that contain the "=" (equals) character, which is not properly handled during encoding.

  • EPSS 3.69%
  • Published 15.04.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code "when Unicode character is out of BMP range."

  • EPSS 0.49%
  • Published 19.02.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name.

  • EPSS 0.07%
  • Published 29.11.2002 05:00:00
  • Last modified 03.04.2025 01:03:51

Courier sqwebmail before 0.40.0 does not quickly drop privileges after startup in certain cases, which could allow local users to read arbitrary files.

  • EPSS 0.76%
  • Published 04.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Double Precision Courier e-mail MTA allows remote attackers to cause a denial of service (CPU consumption) via a message with an extremely large or negative value for the year, which causes a tight loop.