CVE-2004-1098
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/01/2005
Last modified:
03/04/2025
Description
MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header.
Impact
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:roaring_penguin:mimedefang:2.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.14:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.20:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.21:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.38:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.39:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.41:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.42:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.43:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.44:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:2.45:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:4.46:*:*:*:*:*:*:* | ||
cpe:2.3:a:roaring_penguin:mimedefang:4.47:*:*:*:*:*:*:* | ||
cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:amd64:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://lists.roaringpenguin.com/pipermail/mimedefang/2004-October/024959.html
- http://www.gentoo.org/security/en/glsa/glsa-200411-06.xml
- http://www.mandriva.com/security/advisories?name=MDKSA-2004%3A123
- http://www.securityfocus.com/bid/11563
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17940
- http://lists.roaringpenguin.com/pipermail/mimedefang/2004-October/024959.html
- http://www.gentoo.org/security/en/glsa/glsa-200411-06.xml
- http://www.mandriva.com/security/advisories?name=MDKSA-2004%3A123
- http://www.securityfocus.com/bid/11563
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17940