Vulnerability Name:

CVE-2014-3956 (CCN-93592)

Assigned:2014-06-03
Published:2014-06-03
Updated:2017-12-29
Summary:The sm_close_on_exec function in conf.c in sendmail before 8.14.9 has arguments in the wrong order, and consequently skips setting expected FD_CLOEXEC flags, which allows local users to access unintended high-numbered file descriptors via a custom mail-delivery program.
CVSS v3 Severity:4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:1.9 Low (CVSS v2 Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N)
1.4 Low (Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): None
2.1 Low (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N)
1.6 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): None
Vulnerability Type:CWE-200
Vulnerability Consequences:Bypass Security
References:Source: CONFIRM
Type: Vendor Advisory
ftp://ftp.sendmail.org/pub/sendmail/RELEASE_NOTES

Source: CONFIRM
Type: Third Party Advisory
http://advisories.mageia.org/MGASA-2014-0270.html

Source: MITRE
Type: CNA
CVE-2014-3956

Source: FEDORA
Type: Third Party Advisory
FEDORA-2014-7093

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2014:0804

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2014:0805

Source: MISC
Type: Third Party Advisory, VDB Entry
http://packetstormsecurity.com/files/126975/Slackware-Security-Advisory-sendmail-Updates.html

Source: CCN
Type: Bugtraq Mailing List, Tue 3 Jun 2014
FreeBSD Security Advisory FreeBSD-SA-14:11.sendmail

Source: SECUNIA
Type: UNKNOWN
57455

Source: SECUNIA
Type: UNKNOWN
58628

Source: GENTOO
Type: UNKNOWN
GLSA-201412-32

Source: FREEBSD
Type: UNKNOWN
FreeBSD-SA-14:11

Source: CCN
Type: IBM Security Bulletin T1027341 (AIX family)
Vulnerability in sendmail impacts AIX (CVE-2014-3956)

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2014:147

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2015:128

Source: CCN
Type: OSVDB ID: 107311
Sendmail File Descriptor Handling Open SMTP Connection Manipulation

Source: BID
Type: Third Party Advisory, VDB Entry
67791

Source: CCN
Type: BID-67791
Sendmail File Descriptor Security Vulnerability

Source: SECTRACK
Type: Third Party Advisory, VDB Entry
1030331

Source: CONFIRM
Type: Patch, Vendor Advisory
http://www.sendmail.com/sm/open_source/download/8.14.9/

Source: SLACKWARE
Type: UNKNOWN
SSA:2014-156-04

Source: XF
Type: UNKNOWN
sendmail-cve20143956-sec-bypass(93592)

Source: CONFIRM
Type: Third Party Advisory
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05216368

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2014-3956

Vulnerable Configuration:Configuration 1:
  • cpe:/o:freebsd:freebsd:*:-:*:*:*:*:*:* (Version <= 9.2)

  • Configuration 2:
  • cpe:/a:hp:hpux:*:*:*:*:*:*:*:* (Version <= b.11.31)

  • Configuration 3:
  • cpe:/o:fedoraproject:fedora:20:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/a:sendmail:sendmail:8.6.7:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.7.6:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.7.7:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.7.8:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.7.9:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.7.10:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.8.8:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.9.0:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.9.1:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.9.2:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.9.3:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.10:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.10.0:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.10.1:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.10.2:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.0:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.1:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.2:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.3:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.4:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.5:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.6:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.11.7:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.0:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.1:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.2:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.3:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.4:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.5:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.6:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.7:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.8:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.9:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.10:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.12.11:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.0:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.1:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.2:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.3:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.4:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.5:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.6:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.7:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.13.8:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.0:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.1:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.2:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.3:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.4:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.5:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.6:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:8.14.7:*:*:*:*:*:*:*
  • OR cpe:/a:sendmail:sendmail:*:*:*:*:*:*:*:* (Version <= 8.14.8)

  • Configuration CCN 1:
  • cpe:/a:sendmail:sendmail:8.14.8:*:*:*:*:*:*:*
  • AND
  • cpe:/o:ibm:aix:5.3:*:*:*:*:*:*:*
  • OR cpe:/o:ibm:aix:6.1:*:*:*:*:*:*:*
  • OR cpe:/o:ibm:aix:7.1:*:*:*:*:*:*:*
  • OR cpe:/o:ibm:aix:7.2:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20143956
    V
    CVE-2014-3956
    2022-05-20
    oval:org.opensuse.security:def:33118
    P
    Security update for apache2 (Important)
    2022-01-12
    oval:org.opensuse.security:def:34676
    P
    Security update for net-snmp (Important)
    2022-01-05
    oval:org.opensuse.security:def:34053
    P
    Security update for libsndfile (Important)
    2022-01-05
    oval:org.opensuse.security:def:26182
    P
    Security update for MozillaFirefox (Important)
    2021-12-12
    oval:org.opensuse.security:def:32211
    P
    Security update for transfig (Important)
    2021-10-29
    oval:org.opensuse.security:def:30258
    P
    Security update for strongswan (Important)
    2021-10-19
    oval:org.opensuse.security:def:33023
    P
    Security update for MozillaFirefox (Important)
    2021-10-15
    oval:org.opensuse.security:def:29433
    P
    Security update for xen (Moderate)
    2021-10-07
    oval:org.opensuse.security:def:30249
    P
    Security update for MozillaFirefox (Important)
    2021-09-22
    oval:org.opensuse.security:def:26129
    P
    Security update for gtk-vnc (Moderate)
    2021-09-16
    oval:org.opensuse.security:def:26125
    P
    Security update for grilo (Important)
    2021-09-09
    oval:org.opensuse.security:def:26118
    P
    Security update for php72 (Important)
    2021-09-02
    oval:org.opensuse.security:def:26117
    P
    Security update for xen (Important)
    2021-09-02
    oval:org.opensuse.security:def:34517
    P
    Security update for openssl-1_1 (Important)
    2021-08-24
    oval:org.opensuse.security:def:30117
    P
    Security update for openssl (Important)
    2021-08-24
    oval:org.opensuse.security:def:30221
    P
    Security update for arpwatch (Important)
    2021-06-28
    oval:org.opensuse.security:def:32124
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:42698
    P
    sendmail-8.14.3-50.24.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:29379
    P
    Security update for spice (Important)
    2021-06-08
    oval:org.opensuse.security:def:36291
    P
    sendmail-8.14.3-50.24.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36568
    P
    sendmail-8.14.3-50.24.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:34428
    P
    Security update for the Linux Kernel (Important)
    2021-05-12
    oval:org.opensuse.security:def:26044
    P
    Security update for avahi (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:33632
    P
    Security update for glibc (Important)
    2021-04-13
    oval:org.opensuse.security:def:32067
    P
    Security update for fwupdate (Important)
    2021-04-08
    oval:org.opensuse.security:def:30043
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP2) (Important)
    2021-03-17
    oval:org.opensuse.security:def:34041
    P
    Security update for python (Moderate)
    2021-03-16
    oval:org.opensuse.security:def:29482
    P
    Security update for wpa_supplicant (Important)
    2021-03-09
    oval:org.opensuse.security:def:30031
    P
    Security update for perl-XML-Twig (Moderate)
    2021-03-01
    oval:org.opensuse.security:def:30032
    P
    Security update for MozillaFirefox (Important)
    2021-03-01
    oval:org.opensuse.security:def:26193
    P
    Security update for bind (Important)
    2021-02-18
    oval:org.opensuse.security:def:34042
    P
    Security update for MozillaFirefox (Important)
    2021-01-12
    oval:org.opensuse.security:def:28868
    P
    Security update for python (Important)
    2020-12-11
    oval:org.opensuse.security:def:35571
    P
    kdelibs3-3.5.10-23.27.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35530
    P
    clamav-0.96-0.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:26402
    P
    Security update for irssi (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26747
    P
    libgdiplus0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26893
    P
    fetchmail on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26427
    P
    Security update for python-Django (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26631
    P
    postgresql on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27004
    P
    pam on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27159
    P
    kdelibs4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29226
    P
    Security update for postgresql94 (Important)
    2020-12-01
    oval:org.opensuse.security:def:29521
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:30395
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:30740
    P
    Security update for adns (Important)
    2020-12-01
    oval:org.opensuse.security:def:31481
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31758
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:32423
    P
    Security update for wpa_supplicant (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32577
    P
    man on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32797
    P
    tftp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33419
    P
    Security update for NetworkManager-gnome
    2020-12-01
    oval:org.opensuse.security:def:33588
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:34137
    P
    Security update for ntp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34822
    P
    Security update for augeas
    2020-12-01
    oval:org.opensuse.security:def:25916
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26266
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26558
    P
    gnutls on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27289
    P
    sendmail on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26459
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:26796
    P
    pam on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27531
    P
    pango-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26428
    P
    Security update for redis (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26712
    P
    gpg2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27057
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27203
    P
    libopensc2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28787
    P
    Security update for Mozilla NSS
    2020-12-01
    oval:org.opensuse.security:def:28999
    P
    Security update for hawk
    2020-12-01
    oval:org.opensuse.security:def:29539
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:30481
    P
    Security update for bsdtar (Important)
    2020-12-01
    oval:org.opensuse.security:def:30779
    P
    Security update for bash (Important)
    2020-12-01
    oval:org.opensuse.security:def:31519
    P
    Security update for sendmail
    2020-12-01
    oval:org.opensuse.security:def:31769
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:32472
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:33215
    P
    ofed on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32798
    P
    tgt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33476
    P
    Security update for libgdiplus0
    2020-12-01
    oval:org.opensuse.security:def:34273
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34848
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:25840
    P
    Security update for libvirt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26417
    P
    Security update for Mozilla Thunderbird (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26572
    P
    kdelibs4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26543
    P
    expat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26835
    P
    unrar on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27566
    P
    sendmail on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26439
    P
    Security update for MozillaThunderbird (Important)
    2020-12-01
    oval:org.opensuse.security:def:26769
    P
    libsoup-2_4-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27106
    P
    davfs2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27841
    P
    Security update for mysql (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28788
    P
    Security update for mutt
    2020-12-01
    oval:org.opensuse.security:def:29085
    P
    Security update for emacs (Important)
    2020-12-01
    oval:org.opensuse.security:def:29583
    P
    Security update for apache2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:30636
    P
    Security update for xinetd
    2020-12-01
    oval:org.opensuse.security:def:30799
    P
    Security update for bsdtar (Important)
    2020-12-01
    oval:org.opensuse.security:def:31843
    P
    Security update for cairo (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32511
    P
    findutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33254
    P
    sendmail on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32809
    P
    xorg-x11-Xvnc on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33175
    P
    libpulse-browse0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33525
    P
    Security update for tgt
    2020-12-01
    oval:org.opensuse.security:def:34270
    P
    Security update for puppet (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34371
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34734
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34892
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25841
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26470
    P
    Security update for git-annex (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26616
    P
    mutt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26321
    P
    Security update for kcoreaddons (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26694
    P
    expat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26849
    P
    zoo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26503
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:26853
    P
    NetworkManager on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27145
    P
    gzip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27876
    P
    Security update for sendmail
    2020-12-01
    oval:org.opensuse.security:def:28799
    P
    Security update for openssh
    2020-12-01
    oval:org.opensuse.security:def:29142
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:30338
    P
    Security update for transfig (Low)
    2020-12-01
    oval:org.opensuse.security:def:30691
    P
    Security update for Mozilla Firefox
    2020-12-01
    oval:org.opensuse.security:def:30843
    P
    Security update for cyrus-imapd (Important)
    2020-12-01
    oval:org.opensuse.security:def:31757
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:31975
    P
    Security update for jasper (Important)
    2020-12-01
    oval:org.opensuse.security:def:32367
    P
    Security update for syslog-ng (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32533
    P
    java-1_6_0-ibm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32888
    P
    jpeg on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33262
    P
    stunnel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33564
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34310
    P
    Security update for sendmail
    2020-12-01
    oval:org.opensuse.security:def:34783
    P
    Recommended update for NetworkManager-kde4 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25852
    P
    Security update for flash-playerqemu (Important)
    2020-12-01
    oval:org.opensuse.security:def:26519
    P
    PackageKit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27254
    P
    openvpn on GA media (Moderate)
    2020-12-01
    oval:org.cisecurity:def:1399
    V
    HPE HP-UX running CIFS Server (Samba), Remote Denial of Service (DoS), Disclosure of Information, Unauthorized Access
    2016-12-23
    oval:org.mitre.oval:def:26065
    P
    SUSE-SU-2014:0872-1 -- Security update for sendmail
    2014-09-15
    oval:com.ubuntu.artful:def:20143956000
    V
    CVE-2014-3956 on Ubuntu 17.10 (artful) - low.
    2014-06-04
    oval:com.ubuntu.xenial:def:201439560000000
    V
    CVE-2014-3956 on Ubuntu 16.04 LTS (xenial) - low.
    2014-06-04
    oval:com.ubuntu.trusty:def:20143956000
    V
    CVE-2014-3956 on Ubuntu 14.04 LTS (trusty) - low.
    2014-06-04
    oval:com.ubuntu.bionic:def:20143956000
    V
    CVE-2014-3956 on Ubuntu 18.04 LTS (bionic) - low.
    2014-06-04
    oval:com.ubuntu.xenial:def:20143956000
    V
    CVE-2014-3956 on Ubuntu 16.04 LTS (xenial) - low.
    2014-06-04
    oval:com.ubuntu.cosmic:def:201439560000000
    V
    CVE-2014-3956 on Ubuntu 18.10 (cosmic) - low.
    2014-06-04
    oval:com.ubuntu.cosmic:def:20143956000
    V
    CVE-2014-3956 on Ubuntu 18.10 (cosmic) - low.
    2014-06-04
    oval:com.ubuntu.bionic:def:201439560000000
    V
    CVE-2014-3956 on Ubuntu 18.04 LTS (bionic) - low.
    2014-06-04
    oval:com.ubuntu.precise:def:20143956000
    V
    CVE-2014-3956 on Ubuntu 12.04 LTS (precise) - low.
    2014-06-04
    BACK
    freebsd freebsd * -
    hp hpux *
    fedoraproject fedora 20
    sendmail sendmail 8.6.7
    sendmail sendmail 8.7.6
    sendmail sendmail 8.7.7
    sendmail sendmail 8.7.8
    sendmail sendmail 8.7.9
    sendmail sendmail 8.7.10
    sendmail sendmail 8.8.8
    sendmail sendmail 8.9.0
    sendmail sendmail 8.9.1
    sendmail sendmail 8.9.2
    sendmail sendmail 8.9.3
    sendmail sendmail 8.10
    sendmail sendmail 8.10.0
    sendmail sendmail 8.10.1
    sendmail sendmail 8.10.2
    sendmail sendmail 8.11.0
    sendmail sendmail 8.11.1
    sendmail sendmail 8.11.2
    sendmail sendmail 8.11.3
    sendmail sendmail 8.11.4
    sendmail sendmail 8.11.5
    sendmail sendmail 8.11.6
    sendmail sendmail 8.11.7
    sendmail sendmail 8.12.0
    sendmail sendmail 8.12.1
    sendmail sendmail 8.12.2
    sendmail sendmail 8.12.3
    sendmail sendmail 8.12.4
    sendmail sendmail 8.12.5
    sendmail sendmail 8.12.6
    sendmail sendmail 8.12.7
    sendmail sendmail 8.12.8
    sendmail sendmail 8.12.9
    sendmail sendmail 8.12.10
    sendmail sendmail 8.12.11
    sendmail sendmail 8.13.0
    sendmail sendmail 8.13.1
    sendmail sendmail 8.13.2
    sendmail sendmail 8.13.3
    sendmail sendmail 8.13.4
    sendmail sendmail 8.13.5
    sendmail sendmail 8.13.6
    sendmail sendmail 8.13.7
    sendmail sendmail 8.13.8
    sendmail sendmail 8.14.0
    sendmail sendmail 8.14.1
    sendmail sendmail 8.14.2
    sendmail sendmail 8.14.3
    sendmail sendmail 8.14.4
    sendmail sendmail 8.14.5
    sendmail sendmail 8.14.6
    sendmail sendmail 8.14.7
    sendmail sendmail *
    sendmail sendmail 8.14.8
    ibm aix 5.3
    ibm aix 6.1
    ibm aix 7.1
    ibm aix 7.2