CVE-2008-1648
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
02/04/2008
Last modified:
09/04/2025
Description
Sympa before 5.4 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message with a malformed value of the Content-Type header and unspecified other headers. NOTE: some of these details are obtained from third party information.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:sympa:sympa:0.001:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.002:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.003:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.004:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.005:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.006:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.007:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.008:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.009:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.010:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:0.011:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:1.2.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:1.2.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:1.2.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:sympa:sympa:1.3.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/29575
- http://secunia.com/advisories/30910
- http://sourcesup.cru.fr/tracker/?func=detail&group_id=23&aid=3702&atid=167
- http://www.debian.org/security/2008/dsa-1600
- http://www.mandriva.com/security/advisories?name=MDVSA-2008%3A133
- http://www.securityfocus.com/bid/28539
- http://www.sympa.org/distribution/latest-stable/NEWS
- http://www.vupen.com/english/advisories/2008/1080/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41561
- http://secunia.com/advisories/29575
- http://secunia.com/advisories/30910
- http://sourcesup.cru.fr/tracker/?func=detail&group_id=23&aid=3702&atid=167
- http://www.debian.org/security/2008/dsa-1600
- http://www.mandriva.com/security/advisories?name=MDVSA-2008%3A133
- http://www.securityfocus.com/bid/28539
- http://www.sympa.org/distribution/latest-stable/NEWS
- http://www.vupen.com/english/advisories/2008/1080/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41561



