Format string vulnerability in send_message.c for Sylpheed-claws 0.9.4 through 0.9.6 allows remote SMTP servers to cause a denial of service (crash) in sylpheed via format strings in an error message.
CVSS 2.0
Severity: MEDIUM
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| sylpheed-claws | sylpheed-claws | 0.9.4 |
| sylpheed | sylpheed | 0.9.6 |
| sylpheed-claws | sylpheed-claws | 0.9.5 |
| sylpheed | sylpheed | 0.9.4 |
| sylpheed-claws | sylpheed-claws | 0.9.6 |
| sylpheed | sylpheed | 0.9.5 |
Buffer overflow in Sylpheed before 1.0.3 and other versions before 1.9.5 allows remote attackers to execute arbitrary code via an e-mail message with certain headers containing non-ASCII characters that are not properly handled when the user replies to the message.
CVSS 2.0
Severity: MEDIUM
Problem Type: NVD-CWE-Other,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| sylpheed | sylpheed | 0.9.11 |
| sylpheed | sylpheed | 1.0.2 |
| sylpheed | sylpheed | 0.9.10 |
| redhat | enterprise_linux | 2.1 |
| gentoo | linux | * |
| sylpheed | sylpheed | 0.9.9 |
| sylpheed | sylpheed | 0.9.12 |
| sylpheed | sylpheed | 0.9.99 |
| altlinux | alt_linux | 2.3 |
| sylpheed | sylpheed | 0.9.5 |
| sylpheed | sylpheed | 0.9.7 |
| sylpheed | sylpheed | 0.9.6 |
| sylpheed | sylpheed | 1.0.0 |
| redhat | fedora_core | core_3.0 |
| redhat | linux_advanced_workstation | 2.1 |
| sylpheed | sylpheed | 0.9.4 |
| sylpheed-claws | sylpheed-claws | 1.0.2 |
| sylpheed | sylpheed | 0.8.11 |
| sylpheed | sylpheed | 1.0.1 |
| sylpheed | sylpheed | 0.9.8 |
Sylpheed-Claws before 2.2.2 and Sylpheed before 2.2.6 allow remote attackers to bypass the URI check functionality and makes it easier to conduct phishing attacks via a URI that begins with a space character.
CVSS 2.0
Severity: LOW
Problem Type: CWE-20,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| sylpheed | sylpheed | 2.0.2 |
| sylpheed-claws | sylpheed-claws | * |
| sylpheed | sylpheed | 2.1 |
| sylpheed | sylpheed | 2.1.2 |
| sylpheed | sylpheed | * |
| sylpheed | sylpheed | 2.1.3 |
| sylpheed | sylpheed | 2.0.1 |
| sylpheed-claws | sylpheed-claws | 0.9.4 |
| sylpheed-claws | sylpheed-claws | 0.9.5 |
| sylpheed | sylpheed | 2.1.5 |
| sylpheed | sylpheed | 2.0 |
| sylpheed | sylpheed | 2.0.3 |
| sylpheed | sylpheed | 2.1.1 |
| sylpheed-claws | sylpheed-claws | 1.0.2 |
| sylpheed-claws | sylpheed-claws | 0.9.6 |
| sylpheed | sylpheed | 2.1.4 |