Vulnerability Name:

CVE-2009-3235 (CCN-53248)

Assigned:2009-09-14
Published:2009-09-14
Updated:2017-09-19
Summary:Multiple stack-based buffer overflows in the Sieve plugin in Dovecot 1.0 before 1.0.4 and 1.1 before 1.1.7, as derived from Cyrus libsieve, allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SIEVE script, as demonstrated by forwarding an e-mail message to a large number of recipients, a different vulnerability than CVE-2009-2632.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
6.5 Medium (REDHAT CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
4.8 Medium (REDHAT Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-119
CWE-121
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2009-3235

Source: MLIST
Type: Patch, Vendor Advisory
[Dovecot-news] 20090914 Security holes in CMU Sieve plugin

Source: APPLE
Type: UNKNOWN
APPLE-SA-2009-11-09-1

Source: SUSE
Type: UNKNOWN
SUSE-SR:2009:016

Source: SUSE
Type: UNKNOWN
SUSE-SR:2009:018

Source: CCN
Type: RHSA-2009-1459
Important: cyrus-imapd security update

Source: CCN
Type: SA36698
Dovecot CMU Sieve Plugin Buffer Overflow Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
36698

Source: SECUNIA
Type: Vendor Advisory
36713

Source: SECUNIA
Type: UNKNOWN
36904

Source: CONFIRM
Type: UNKNOWN
http://support.apple.com/kb/HT3937

Source: DEBIAN
Type: DSA-1892
dovecot -- buffer overflow

Source: DEBIAN
Type: DSA-1893
kolab-cyrus-imapd -- buffer overflow

Source: CCN
Type: Dovecot-news Mailing List, Mon Sep 14 02:56:22 EEST 2009
Security holes in CMU Sieve plugin

Source: MLIST
Type: UNKNOWN
[oss-security] 20090914 Re: CVE for recent cyrus-imap issue

Source: OSVDB
Type: UNKNOWN
58103

Source: CCN
Type: OSVDB ID: 58103
Dovecot CMU Sieve Plugin Script Handling Multiple Overflows

Source: BID
Type: UNKNOWN
36377

Source: CCN
Type: BID-36377
Dovecot Sieve Plugin Multiple Unspecified Buffer Overflow Vulnerabilities

Source: CCN
Type: USN-838-1
Dovecot vulnerabilities

Source: UBUNTU
Type: UNKNOWN
USN-838-1

Source: VUPEN
Type: Vendor Advisory
ADV-2009-2641

Source: VUPEN
Type: UNKNOWN
ADV-2009-3184

Source: XF
Type: UNKNOWN
cmu-sieve-dovecot-unspecified-bo(53248)

Source: XF
Type: UNKNOWN
cmu-sieve-dovecot-unspecified-bo(53248)

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:10515

Source: FEDORA
Type: Patch
FEDORA-2009-9559

Source: SUSE
Type: SUSE-SR:2009:016
SUSE Security Summary Report

Source: SUSE
Type: SUSE-SR:2009:018
SUSE Security Summary Report

Vulnerable Configuration:Configuration 1:
  • cpe:/a:dovecot:dovecot:1.0:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.0.3:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1.0:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1.3:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1.4:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1.5:*:*:*:*:*:*:*
  • OR cpe:/a:dovecot:dovecot:1.1.6:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:4:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*

  • Configuration RedHat 6:
  • cpe:/o:redhat:enterprise_linux:5:*:*:*:*:*:*:*

  • Configuration RedHat 7:
  • cpe:/o:redhat:enterprise_linux:5::client_workstation:*:*:*:*:*

  • Configuration RedHat 8:
  • cpe:/o:redhat:enterprise_linux:5::server:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:8183
    P
    Security update for amazon-ssm-agent (Important)
    2023-06-16
    oval:org.opensuse.security:def:7459
    P
    cairo-devel-1.16.0-150400.9.6 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7501
    P
    gc-devel-7.6.4-1.16 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7523
    P
    gstreamer-plugins-good-1.22.0-150500.2.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7899
    P
    gstreamer-plugins-bad-1.22.0-150500.1.3 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7921
    P
    libavcodec57-3.4.2-150200.11.28.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7492
    P
    expat-2.4.4-150400.3.12.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7510
    P
    glibc-2.31-150300.46.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7434
    P
    apache2-2.4.51-150400.6.11.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:8161
    P
    Security update for openvswitch (Important)
    2023-05-25
    oval:org.opensuse.security:def:20093235
    V
    CVE-2009-3235
    2022-06-30
    oval:org.opensuse.security:def:42288
    P
    Security update for libslirp (Important)
    2022-05-18
    oval:org.opensuse.security:def:112136
    P
    cyradm-2.4.18-3.4 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:26222
    P
    Security update for virglrenderer (Important) (in QA)
    2022-01-17
    oval:org.opensuse.security:def:32288
    P
    Security update for libsndfile (Important)
    2022-01-05
    oval:org.opensuse.security:def:31370
    P
    Security update for java-1_7_1-ibm (Moderate) (in QA)
    2022-01-04
    oval:org.opensuse.security:def:7230
    P
    Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP2) (Important)
    2021-12-14
    oval:org.opensuse.security:def:7232
    P
    Security update for the Linux Kernel (Live Patch 9 for SLE 15 SP2) (Important)
    2021-12-14
    oval:org.opensuse.security:def:32246
    P
    Security update for xorg-x11-server (Important)
    2021-12-14
    oval:org.opensuse.security:def:31718
    P
    Security update for MozillaFirefox (Important)
    2021-12-12
    oval:org.opensuse.security:def:31715
    P
    Security update for the Linux Kernel (Important)
    2021-12-06
    oval:org.opensuse.security:def:105672
    P
    Security update for aaa_base (Moderate)
    2021-12-03
    oval:org.opensuse.security:def:31313
    P
    Security update for ruby2.1 (Important)
    2021-12-01
    oval:org.opensuse.security:def:7210
    P
    Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP2) (Important)
    2021-11-17
    oval:org.opensuse.security:def:26163
    P
    Security update for bind (Important)
    2021-11-11
    oval:org.opensuse.security:def:7278
    P
    Security update for the Linux Kernel (Important)
    2021-11-11
    oval:org.opensuse.security:def:33031
    P
    Security update for cairo (Low)
    2021-10-22
    oval:org.opensuse.security:def:26149
    P
    Security update for iproute2 (Moderate)
    2021-10-18
    oval:org.opensuse.security:def:26141
    P
    Security update for webkit2gtk3 (Important)
    2021-10-06
    oval:org.opensuse.security:def:32183
    P
    Security update for gtk-vnc (Moderate)
    2021-09-16
    oval:org.opensuse.security:def:6970
    P
    Security update for the Linux Kernel (Live Patch 26 for SLE 15 SP1) (Important)
    2021-09-16
    oval:org.opensuse.security:def:7172
    P
    Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP2) (Important)
    2021-09-16
    oval:org.opensuse.security:def:26110
    P
    Security update for aspell (Important)
    2021-08-25
    oval:org.opensuse.security:def:31669
    P
    Security update for cpio (Important)
    2021-08-23
    oval:org.opensuse.security:def:6948
    P
    Security update for the Linux Kernel (Live Patch 24 for SLE 15 SP1) (Important)
    2021-08-17
    oval:org.opensuse.security:def:7261
    P
    Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP3) (Important)
    2021-08-17
    oval:org.opensuse.security:def:31659
    P
    Security update for qemu (Important)
    2021-07-29
    oval:org.opensuse.security:def:6940
    P
    Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP1) (Important)
    2021-07-27
    oval:org.opensuse.security:def:32153
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-07-27
    oval:org.opensuse.security:def:31236
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
    2021-07-27
    oval:org.opensuse.security:def:31658
    P
    Security update for the Linux Kernel (Important)
    2021-07-22
    oval:org.opensuse.security:def:31221
    P
    Security update for MozillaFirefox (Important)
    2021-07-16
    oval:org.opensuse.security:def:26082
    P
    Security update for openexr (Important)
    2021-06-24
    oval:org.opensuse.security:def:32124
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:7248
    P
    Security update for the Linux Kernel (Important)
    2021-06-15
    oval:org.opensuse.security:def:29381
    P
    Security update for ucode-intel (Important)
    2021-06-10
    oval:org.opensuse.security:def:42089
    P
    Security update for ucode-intel (Important)
    2021-06-10
    oval:org.opensuse.security:def:46814
    P
    perl-Cyrus-IMAP-2.3.18-35.71 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13432
    P
    perl-Cyrus-IMAP-2.3.18-35.68 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36151
    P
    ipsec-tools-0.7.3-1.4.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36239
    P
    mailman-2.1.14-9.6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36311
    P
    tgt-0.9.10-0.17.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:7097
    P
    Security update for the Linux Kernel (Important)
    2021-06-08
    oval:org.opensuse.security:def:13694
    P
    perl-Cyrus-IMAP-2.3.18-35.71 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:42514
    P
    cyrus-imapd-2.3.11-60.65.64.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36107
    P
    cyrus-imapd-2.3.11-60.65.64.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36200
    P
    libmysql55client18-32bit-5.5.43-0.7.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36267
    P
    perl-Tk-804.028-50.24 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46552
    P
    perl-Cyrus-IMAP-2.3.18-35.68 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36388
    P
    cyrus-imapd-devel-2.3.11-60.65.64.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36092
    P
    bash-3.2-147.27.35 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32102
    P
    Security update for polkit (Important)
    2021-06-03
    oval:org.opensuse.security:def:31613
    P
    Security update for tomcat (Important)
    2021-04-29
    oval:org.opensuse.security:def:31162
    P
    Security update for the Linux Kernel (Live Patch 32 for SLE 12 SP3) (Important)
    2021-04-28
    oval:org.opensuse.security:def:7078
    P
    Security update for the Linux Kernel (Live Patch 6 for SLE 15 SP2) (Important)
    2021-04-28
    oval:org.opensuse.security:def:31150
    P
    Security update for xorg-x11-server (Important)
    2021-04-14
    oval:org.opensuse.security:def:31151
    P
    Security update for clamav (Important)
    2021-04-14
    oval:org.opensuse.security:def:29345
    P
    Security update for spamassassin (Important)
    2021-04-12
    oval:org.opensuse.security:def:31604
    P
    Security update for spamassassin (Important)
    2021-04-12
    oval:org.opensuse.security:def:7063
    P
    Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP2) (Important)
    2021-04-07
    oval:org.opensuse.security:def:32063
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
    2021-04-07
    oval:org.opensuse.security:def:31368
    P
    Security update for openssl (Moderate)
    2021-03-24
    oval:org.opensuse.security:def:7016
    P
    Security update for the Linux Kernel (Live Patch 21 for SLE 15 SP1) (Important)
    2021-03-17
    oval:org.opensuse.security:def:31360
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-03-17
    oval:org.opensuse.security:def:7239
    P
    Security update for the Linux Kernel (Live Patch 7 for SLE 15 SP2) (Important)
    2021-03-17
    oval:org.opensuse.security:def:26207
    P
    Security update for openssl-1_1 (Moderate)
    2021-03-09
    oval:org.opensuse.security:def:31349
    P
    Security update for MozillaFirefox (Important)
    2021-03-01
    oval:org.opensuse.security:def:31348
    P
    Security update for perl-XML-Twig (Moderate)
    2021-03-01
    oval:org.opensuse.security:def:35286
    P
    Security update for ImageMagick (Moderate)
    2021-02-25
    oval:org.opensuse.security:def:32239
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP3) (Important)
    2021-02-10
    oval:org.opensuse.security:def:7202
    P
    Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP2) (Important)
    2021-02-10
    oval:org.opensuse.security:def:55838
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP2) (Important)
    2021-02-10
    oval:org.opensuse.security:def:7197
    P
    Security update for the Linux Kernel (Live Patch 8 for SLE 15 SP2) (Important)
    2021-02-10
    oval:org.opensuse.security:def:33070
    P
    Security update for MozillaFirefox (Low)
    2021-02-10
    oval:org.opensuse.security:def:32168
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:26061
    P
    Security update for dovecot22 (Important)
    2021-01-04
    oval:org.opensuse.security:def:32019
    P
    Security update for clamav (Important)
    2020-12-22
    oval:org.opensuse.security:def:31566
    P
    Security update for python (Important)
    2020-12-11
    oval:org.opensuse.security:def:31089
    P
    Security update for the Linux Kernel (Live Patch 32 for SLE 12 SP3) (Important)
    2020-12-07
    oval:org.opensuse.security:def:35523
    P
    apache2-mod_perl-2.0.4-40.19 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35670
    P
    apache2-mod_php5-5.2.14-0.7.24.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35881
    P
    cyrus-imapd-2.3.11-60.65.64.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35938
    P
    libMagickCore1-32bit-6.4.3.6-7.26.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36005
    P
    opie-2.4-662.18.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35548
    P
    freetype2-2.3.7-25.10.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35785
    P
    mono-core-2.6.7-0.7.19 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35932
    P
    krb5-1.6.3-133.49.54.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35580
    P
    libQtWebKit4-32bit-4.6.2-1.6.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35830
    P
    systemtap-1.5-0.7.54 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:41942
    P
    cyrus-imapd-2.3.11-60.21.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35535
    P
    cyrus-imapd-2.3.11-60.21.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35889
    P
    emacs-22.3-4.36.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35977
    P
    libtspi1-0.3.10-0.9.50 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36049
    P
    unixODBC_23-2.3.1-0.9.40 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35684
    P
    dbus-1-glib-0.76-34.22.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35842
    P
    xdg-utils-1.0.2-36.18 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35682
    P
    cyrus-imapd-2.3.11-60.65.64.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:31585
    P
    Security update for tcpdump (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31791
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:31940
    P
    Recommended update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32651
    P
    dhcpcd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32712
    P
    libgdiplus0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33394
    P
    Security update for SUSE Manager Client Tools (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25431
    P
    Security update for java-1_8_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:25949
    P
    Security update for icu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26279
    P
    Security update for gimp (Low)
    2020-12-01
    oval:org.opensuse.security:def:26514
    P
    LibVNCServer on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28608
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:28663
    P
    Security update for Mozilla Firefox
    2020-12-01
    oval:org.opensuse.security:def:35191
    P
    Security update for less (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25938
    P
    Security update for evince (Important)
    2020-12-01
    oval:org.opensuse.security:def:32500
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35190
    P
    Security update for lcms
    2020-12-01
    oval:org.opensuse.security:def:55015
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55393
    P
    syslog-service on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55672
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:56123
    P
    Recommended update for ncurses (Important)
    2020-12-01
    oval:org.opensuse.security:def:25804
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25862
    P
    Recommended update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:26682
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31015
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:31865
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31926
    P
    Recommended update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:32608
    P
    systemtap on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25245
    P
    Security update for python-aws-sam-translator, python-boto3, python-botocore, python-cfn-lint, python-jsonschema, python-nose2, python-parameterized, python-pathlib2, python-pytest-cov, python-requests, python-s3transfer (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25437
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:25575
    P
    Security update for libX11 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25810
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26845
    P
    xorg-x11-libs-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31434
    P
    Security update for php53 (Important)
    2020-12-01
    oval:org.opensuse.security:def:31802
    P
    Security update for adns (Important)
    2020-12-01
    oval:org.opensuse.security:def:32327
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32393
    P
    Security update for tomcat6 (Important)
    2020-12-01
    oval:org.opensuse.security:def:33433
    P
    Security update for Cyrus IMAPD
    2020-12-01
    oval:org.opensuse.security:def:25234
    P
    Security update for dnsmasq (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25732
    P
    Security update for qemu (Important)
    2020-12-01
    oval:org.opensuse.security:def:25941
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26567
    P
    java-1_4_2-ibm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26655
    P
    xterm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26713
    P
    gstreamer-0_10-plugins-base on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31945
    P
    Security update for gnutls (Important)
    2020-12-01
    oval:org.opensuse.security:def:32303
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32546
    P
    libadns1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36687
    P
    libpython2_7-1_0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25656
    P
    Security update for spice-gtk (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27935
    P
    Security update for GraphicsMagick (Important)
    2020-12-01
    oval:org.opensuse.security:def:28129
    P
    Security update for icu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28270
    P
    Security update for mono-core (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28506
    P
    Security update for openssh-openssl1 (Important)
    2020-12-01
    oval:org.opensuse.security:def:35453
    P
    Security update for perl-DBD-mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56231
    P
    Security update for expat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56397
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:56516
    P
    Security update for ucode-intel (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27924
    P
    Security update for Botan (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:7325
    P
    automake on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:7359
    P
    dosfstools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31757
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:31823
    P
    Security update for bash (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32647
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35452
    P
    Security update for perl-Archive-Zip (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25162
    P
    Security update for webkit2gtk3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25371
    P
    Security update for python-ipaddress (Important)
    2020-12-01
    oval:org.opensuse.security:def:25512
    P
    Security update for tomcat (Important)
    2020-12-01
    oval:org.opensuse.security:def:25863
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25951
    P
    Security update for pcsc-lite (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26009
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26880
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31517
    P
    Security update for quagga (Important)
    2020-12-01
    oval:org.opensuse.security:def:31760
    P
    Security update for MozillaFirefox (Critical)
    2020-12-01
    oval:org.opensuse.security:def:32806
    P
    xdg-utils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25086
    P
    Security update for apache2-mod_perl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25443
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25635
    P
    Security update for tigervnc (Critical)
    2020-12-01
    oval:org.opensuse.security:def:25773
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26008
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26335
    P
    security update for go (Low)
    2020-12-01
    oval:org.opensuse.security:def:26388
    P
    Security update for irssi (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27070
    P
    NetworkManager on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31574
    P
    Security update for strongswan (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31883
    P
    Security update for dnsmasq (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32027
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:32602
    P
    ruby on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32690
    P
    kdelibs3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32756
    P
    openslp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36729
    P
    perl-Cyrus-IMAP on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25432
    P
    Security update for ibus (Important)
    2020-12-01
    oval:org.opensuse.security:def:26013
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26363
    P
    Security update for libgit2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28559
    P
    Security update for gtk2
    2020-12-01
    oval:org.opensuse.security:def:28647
    P
    Security update for compat-wireless, compat-wireless-debuginfo, compat-wireless-debugsource, compat-wireless-kmp-default, compat-wireless-kmp-pae, compat-wireless-kmp-trace, compat-wireless-kmp-xen
    2020-12-01
    oval:org.opensuse.security:def:28707
    P
    Security update for gtk2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31573
    P
    Security update for strongswan (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35202
    P
    Security update for PostgreSQL 9.1
    2020-12-01
    oval:org.opensuse.security:def:35422
    P
    Security update for openssl-certs
    2020-12-01
    oval:org.opensuse.security:def:36949
    P
    libsoup-2_4-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25937
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:54993
    P
    python-imaging on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55155
    P
    kdump on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55566
    P
    Recommended update for openssl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25765
    P
    Security update for Adobe Flash Player (Important)
    2020-12-01
    oval:org.opensuse.security:def:25818
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26500
    P
    Security update for ffmpeg-4 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31004
    P
    Security update for java-1_6_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:31457
    P
    Security update for postgresql91
    2020-12-01
    oval:org.opensuse.security:def:31816
    P
    Security update for apport (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31904
    P
    Security update for foomatic-filters (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31970
    P
    Security update for ipsec-tools (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32845
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54992
    P
    python-cupshelpers on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25309
    P
    Security update for MozillaFirefox (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25518
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25659
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27105
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31003
    P
    Security update for java-1_6_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:31958
    P
    Security update for gtk2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32349
    P
    Security update for sqlite3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25233
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25668
    P
    Security update for python3 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25860
    P
    Security update for bash (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25998
    P
    Security update for libreoffice (Important)
    2020-12-01
    oval:org.opensuse.security:def:26233
    P
    Security update for python-reportlab (Important)
    2020-12-01
    oval:org.opensuse.security:def:26616
    P
    mutt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26669
    P
    apache2-mod_perl on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27351
    P
    openvpn-openssl1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31934
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:32390
    P
    Security update for tomcat6 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36991
    P
    perl-Cyrus-IMAP on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25657
    P
    Security update for graphviz (Low)
    2020-12-01
    oval:org.opensuse.security:def:27999
    P
    Security update for OpenEXR (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28213
    P
    Security update for libpng12-0 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28354
    P
    Security update for pidgin (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31933
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35464
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56323
    P
    Security update for openldap2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56435
    P
    Security update for libplist (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26535
    P
    cyrus-imapd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27923
    P
    Security update for xorg-x11-libXv
    2020-12-01
    oval:org.opensuse.security:def:7340
    P
    coolkey on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31779
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:32461
    P
    Security update for xorg-x11-libXdmcp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25098
    P
    Security update for python-numpy (Important)
    2020-12-01
    oval:org.opensuse.security:def:25290
    P
    Security update for ghostscript (Important)
    2020-12-01
    oval:org.opensuse.security:def:25428
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:25663
    P
    Security update for java-11-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:25912
    P
    Security update for zziplib (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25965
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:26647
    P
    w3m on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31460
    P
    Security update for postgresql94 (Important)
    2020-12-01
    oval:org.opensuse.security:def:32014
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25087
    P
    Security update for strongswan (Important)
    2020-12-01
    oval:org.opensuse.security:def:25507
    P
    Security update for git (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25716
    P
    Security update for librsvg (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25857
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26286
    P
    Security update for libcdio (Low)
    2020-12-01
    oval:org.opensuse.security:def:26374
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:26432
    P
    Security update for ansible (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27386
    P
    cyrus-imapd-devel on GA media (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:28758
    P
    RHSA-2009:1459 -- cyrus-imapd security update (Important)
    2015-08-17
    oval:org.mitre.oval:def:13646
    P
    USN-838-1 -- dovecot vulnerabilities
    2014-06-30
    oval:org.mitre.oval:def:18608
    P
    DSA-1892-1 dovecot - arbitrary code execution
    2014-06-23
    oval:org.mitre.oval:def:8390
    P
    DSA-1892 dovecot -- buffer overflow
    2014-06-23
    oval:org.mitre.oval:def:20174
    P
    DSA-1893-1 cyrus-imapd-2.2 kolab-cyrus-imapd - arbitrary code execution
    2014-06-23
    oval:org.mitre.oval:def:7879
    P
    DSA-1893 cyrus-imapd-2.2 kolab-cyrus-imapd -- buffer overflow
    2014-06-23
    oval:org.mitre.oval:def:22982
    P
    ELSA-2009:1459: cyrus-imapd security update (Important)
    2014-05-26
    oval:org.mitre.oval:def:10515
    V
    Multiple stack-based buffer overflows in the Sieve plugin in Dovecot 1.0 before 1.0.4 and 1.1 before 1.1.7, as derived from Cyrus libsieve, allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SIEVE script, as demonstrated by forwarding an e-mail message to a large number of recipients, a different vulnerability than CVE-2009-2632.
    2013-04-29
    oval:com.redhat.rhsa:def:20091459
    P
    RHSA-2009:1459: cyrus-imapd security update (Important)
    2009-09-23
    oval:org.debian:def:1892
    V
    buffer overflow
    2009-09-23
    oval:org.debian:def:1893
    V
    buffer overflow
    2009-09-23
    BACK
    dovecot dovecot 1.0
    dovecot dovecot 1.0.1
    dovecot dovecot 1.0.2
    dovecot dovecot 1.0.3
    dovecot dovecot 1.1
    dovecot dovecot 1.1.0
    dovecot dovecot 1.1.1
    dovecot dovecot 1.1.2
    dovecot dovecot 1.1.3
    dovecot dovecot 1.1.4
    dovecot dovecot 1.1.5
    dovecot dovecot 1.1.6