Vulnerability Name:

CVE-2015-8078 (CCN-107988)

Assigned:2015-11-04
Published:2015-11-04
Updated:2023-02-12
Summary:
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
6.4 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2015-8078

Source: CCN
Type: Cyrus IMAP Web site
Cyrus IMAP Server

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: oss-sec Mailing List, Wed, 4 Nov 2015 11:06:56 -0500 (EST)
Re: CVE request: urlfetch range handling flaw in Cyrus IMAP

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: Red Hat Bugzilla – Bug 1278380
(CVE-2015-8078) CVE-2015-8078 cyrus-imapd: Integer overflow in index_urlfetch

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: cyrus-imapd GIT Repository
urlfetch: extra paranoia

Source: secalert@redhat.com
Type: Vendor Advisory
secalert@redhat.com

Source: XF
Type: UNKNOWN
cyrus-imap-cve20158078-overflow(107988)

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:20158078
V
CVE-2015-8078
2022-06-30
oval:org.opensuse.security:def:112136
P
cyradm-2.4.18-3.4 on GA media (Moderate)
2022-01-17
oval:org.opensuse.security:def:56112
P
Security update for MozillaFirefox (Important) (in QA)
2022-01-14
oval:org.opensuse.security:def:30168
P
Security update for java-1_8_0-ibm (Important) (in QA)
2022-01-04
oval:org.opensuse.security:def:33756
P
Security update for xorg-x11-server (Important)
2021-12-14
oval:org.opensuse.security:def:105672
P
Security update for aaa_base (Moderate)
2021-12-03
oval:org.opensuse.security:def:34002
P
Security update for java-1_8_0-openjdk (Important)
2021-11-23
oval:org.opensuse.security:def:32224
P
Security update for postgresql96 (Important)
2021-11-22
oval:org.opensuse.security:def:29448
P
Security update for postgresql10 (Important)
2021-11-22
oval:org.opensuse.security:def:33040
P
Security update for pcre (Moderate)
2021-11-10
oval:org.opensuse.security:def:32213
P
Security update for binutils (Moderate)
2021-11-09
oval:org.opensuse.security:def:32212
P
Security update for binutils (Moderate)
2021-11-02
oval:org.opensuse.security:def:30124
P
Security update for Mesa (Moderate)
2021-09-16
oval:org.opensuse.security:def:33717
P
Security update for transfig (Moderate)
2021-09-16
oval:org.opensuse.security:def:32996
P
Security update for xerces-c (Important)
2021-09-03
oval:org.opensuse.security:def:33699
P
Security update for MozillaFirefox (Important)
2021-08-17
oval:org.opensuse.security:def:32973
P
Security update for libsndfile (Critical)
2021-08-05
oval:org.opensuse.security:def:41775
P
Security update for sqlite3 (Important)
2021-07-29
oval:org.opensuse.security:def:30105
P
Security update for qemu (Moderate)
2021-07-21
oval:org.opensuse.security:def:20467
P
Security update for the Linux Kernel (Live Patch 8 for SLE 12 SP5) (Important)
2021-07-14
oval:org.opensuse.security:def:33678
P
Security update for ovmf (Important)
2021-06-24
oval:org.opensuse.security:def:31198
P
Security update for caribou (Important)
2021-06-10
oval:org.opensuse.security:def:42590
P
libevent-1_4-2-1.4.5-24.24.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:29377
P
Security update for libX11 (Important)
2021-06-08
oval:org.opensuse.security:def:42635
P
libvorbis-1.2.0-79.20.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:32934
P
Security update for polkit (Important)
2021-06-03
oval:org.opensuse.security:def:20441
P
Security update for the Linux Kernel (Live Patch 10 for SLE 12 SP5) (Important)
2021-05-25
oval:org.opensuse.security:def:29365
P
Security update for libxml2 (Important)
2021-05-19
oval:org.opensuse.security:def:30066
P
Security update for libnettle (Important)
2021-04-28
oval:org.opensuse.security:def:31154
P
Security update for sudo (Important)
2021-04-20
oval:org.opensuse.security:def:56006
P
Security update for sudo (Important)
2021-04-20
oval:org.opensuse.security:def:34404
P
Security update for glibc (Important)
2021-04-13
oval:org.opensuse.security:def:28947
P
Security update for openldap2 (Important)
2021-03-03
oval:org.opensuse.security:def:40311
P
Security update for java-1_7_0-ibm (Important)
2021-02-23
oval:org.opensuse.security:def:34624
P
Security update for python (Important)
2021-02-11
oval:org.opensuse.security:def:28930
P
Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP2) (Important)
2021-02-10
oval:org.opensuse.security:def:30017
P
Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP2) (Important)
2021-02-10
oval:org.opensuse.security:def:34488
P
Security update for MozillaFirefox (Important)
2021-01-29
oval:org.opensuse.security:def:55833
P
Security update for sudo (Important)
2021-01-27
oval:org.opensuse.security:def:19564
P
Security update for hawk2 (Critical)
2021-01-22
oval:org.opensuse.security:def:29366
P
Security update for dnsmasq (Important)
2021-01-19
oval:org.opensuse.security:def:35247
P
Security update for the Linux Kernel (Important)
2021-01-15
oval:org.opensuse.security:def:19526
P
Security update for hawk2 (Important)
2021-01-12
oval:org.opensuse.security:def:40310
P
Security update for java-1_7_0-ibm (Moderate)
2020-12-22
oval:org.opensuse.security:def:29962
P
Security update for MozillaFirefox (Critical)
2020-12-21
oval:org.opensuse.security:def:32828
P
Security update for python36 (Important)
2020-12-11
oval:org.opensuse.security:def:35926
P
kde4-kgreeter-plugins-4.3.5-0.12.12.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:35885
P
dhcpcd-3.2.3-44.30.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:41946
P
emacs-22.3-4.32.4 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:41952
P
file-32bit-4.24-43.17 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:40999
P
Security update for java-1_8_0-openjdk (Important)
2020-12-01
oval:org.opensuse.security:def:18837
P
Security update for procps (Important)
2020-12-01
oval:org.opensuse.security:def:27235
P
lvm2 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:41872
P
Security update for qemu (Moderate)
2020-12-01
oval:org.opensuse.security:def:30382
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:28280
P
Security update for mysql (Moderate)
2020-12-01
oval:org.opensuse.security:def:40675
P
Security update for the Linux Kernel (Live Patch 15 for SLE 12 SP2) (Important)
2020-12-01
oval:org.opensuse.security:def:19676
P
Security update for giflib (Moderate)
2020-12-01
oval:org.opensuse.security:def:31133
P
Security update for kvm (Moderate)
2020-12-01
oval:org.opensuse.security:def:56956
P
Security update for libraw (Moderate)
2020-12-01
oval:org.opensuse.security:def:29666
P
Security update for cyrus-imapd (Low)
2020-12-01
oval:org.opensuse.security:def:41535
P
Security update for compat-openssl098 (Moderate)
2020-12-01
oval:org.opensuse.security:def:35137
P
Security update for the Linux Kernel (Moderate)
2020-12-01
oval:org.opensuse.security:def:19114
P
Security update for freeradius-server (Moderate)
2020-12-01
oval:org.opensuse.security:def:55433
P
Security update for gnutls (Moderate)
2020-12-01
oval:org.opensuse.security:def:33603
P
Security update for MozillaFirefox (Moderate)
2020-12-01
oval:org.opensuse.security:def:30834
P
Security update for curl (Moderate)
2020-12-01
oval:org.opensuse.security:def:56671
P
Security update for tiff (Moderate)
2020-12-01
oval:org.opensuse.security:def:41212
P
Security update for the Linux Kernel (Live Patch 31 for SLE 12 SP2) (Important)
2020-12-01
oval:org.opensuse.security:def:34895
P
Security update for cyrus-imapd (Important)
2020-12-01
oval:org.opensuse.security:def:26809
P
puppet on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:34780
P
Security update for Mozilla Firefox
2020-12-01
oval:org.opensuse.security:def:19020
P
Security update for dovecot22 (Important)
2020-12-01
oval:org.opensuse.security:def:28054
P
Security update for cyrus-imapd (Important)
2020-12-01
oval:org.opensuse.security:def:33375
P
Security update for IBM Java 1.4.2
2020-12-01
oval:org.opensuse.security:def:19348
P
Security update for java-1_7_1-ibm (Moderate)
2020-12-01
oval:org.opensuse.security:def:28552
P
Security update for MozillaFirefox
2020-12-01
oval:org.opensuse.security:def:41022
P
Security update for clamav (Important)
2020-12-01
oval:org.opensuse.security:def:34148
P
Security update for openslp (Important)
2020-12-01
oval:org.opensuse.security:def:31836
P
Security update for bind (Important)
2020-12-01
oval:org.opensuse.security:def:26605
P
libtiff3 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:41011
P
Security update for ghostscript (Important)
2020-12-01
oval:org.opensuse.security:def:32528
P
gvim on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:27323
P
xalan-j2 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:30394
P
Security update for Xen and libvirt
2020-12-01
oval:org.opensuse.security:def:33845
P
Security update for gtk2 (Moderate)
2020-12-01
oval:org.opensuse.security:def:31094
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:28991
P
Security update for xfsprogs (Moderate)
2020-12-01
oval:org.opensuse.security:def:34393
P
Security update for unzip
2020-12-01
oval:org.opensuse.security:def:18745
P
Security update for php5 (Important)
2020-12-01
oval:org.opensuse.security:def:27031
P
squid3 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:35088
P
Security update for kdebase4-workspace
2020-12-01
oval:org.opensuse.security:def:19778
P
Security update for cyrus-imapd (Important)
2020-12-01
oval:org.opensuse.security:def:55432
P
Security update for pidgin (Moderate)
2020-12-01
oval:org.opensuse.security:def:40414
P
Security update for atftp (Important)
2020-12-01
oval:org.opensuse.security:def:28842
P
Security update for vorbis-tools (Moderate)
2020-12-01
oval:org.opensuse.security:def:56837
P
Security update for compat-openssl098 (Moderate)
2020-12-01
oval:org.opensuse.security:def:34855
P
Security update for cairo (Moderate)
2020-12-01
oval:org.opensuse.security:def:18616
P
Security update for jasper (Moderate)
2020-12-01
oval:org.opensuse.security:def:41364
P
Security update for perl (Important)
2020-12-01
oval:org.opensuse.security:def:19078
P
Security update for systemd (Important)
2020-12-01
oval:org.opensuse.security:def:28019
P
Security update for bash (Low)
2020-12-01
oval:org.opensuse.security:def:33387
P
Security update for compat-openssl097g (Moderate)
2020-12-01
oval:org.opensuse.security:def:30690
P
Security update for Mesa (Moderate)
2020-12-01
oval:org.opensuse.security:def:56278
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:41138
P
Security update for perl-DBI (Important)
2020-12-01
oval:org.opensuse.security:def:19803
P
Security update for bind (Important)
2020-12-01
oval:org.opensuse.security:def:26617
P
nagios on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:18875
P
Security update for ntfs-3g_ntfsprogs (Low)
2020-12-01
oval:org.opensuse.security:def:27284
P
radvd on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:41901
P
Security update for krb5 (Moderate)
2020-12-01
oval:org.opensuse.security:def:30383
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:28410
P
Security update for tiff (Moderate)
2020-12-01
oval:org.opensuse.security:def:40744
P
Security update for the Linux Kernel (Live Patch 15 for SLE 12 SP2) (Important)
2020-12-01
oval:org.opensuse.security:def:19709
P
Security update for java-1_7_1-ibm (Important)
2020-12-01
oval:org.opensuse.security:def:29665
P
Security update for cyrus-imapd (Important)
2020-12-01
oval:org.opensuse.security:def:34392
P
Security update for unrar (Moderate)
2020-12-01
oval:org.opensuse.security:def:32300
P
Security update for python (Moderate)
2020-12-01
oval:org.opensuse.security:def:29723
P
Security update for MozillaFirefox (Important)
2020-12-01
oval:org.opensuse.security:def:41711
P
Security update for java-1_7_0-ibm (Important)
2020-12-01
oval:org.opensuse.security:def:35176
P
Security update for kvm (Important)
2020-12-01
oval:org.opensuse.security:def:19752
P
Security update for libqt4 (Moderate)
2020-12-01
oval:org.opensuse.security:def:28202
P
Security update for libid3tag (Moderate)
2020-12-01
oval:org.opensuse.security:def:55455
P
Security update for flash-player (Moderate)
2020-12-01
oval:org.opensuse.security:def:30989
P
Security update for jakarta-commons-collections (Moderate)
2020-12-01
oval:org.opensuse.security:def:41263
P
Security update for openssl (Moderate)
2020-12-01
oval:org.opensuse.security:def:18624
P
Security update for libgit2 (Moderate)
2020-12-01
oval:org.opensuse.security:def:26890
P
evince on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:34870
P
Security update for cpio (Moderate)
2020-12-01
oval:org.opensuse.security:def:19434
P
Security update for php72 (Moderate)
2020-12-01
oval:org.opensuse.security:def:28636
P
Security update for bash
2020-12-01
oval:org.opensuse.security:def:41086
P
Security update for bind (Important)
2020-12-01
oval:org.opensuse.security:def:34173
P
Security update for openssl1 (Important)
2020-12-01
oval:org.opensuse.security:def:26606
P
libvirt on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:41103
P
Security update for python-ipaddress (Important)
2020-12-01
oval:org.opensuse.security:def:32585
P
openssh on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:27337
P
xorg-x11-libxcb-32bit on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:19305
P
Security update for java-1_7_1-ibm (Important)
2020-12-01
oval:org.opensuse.security:def:30468
P
Security update for apache2-mod_nss (Moderate)
2020-12-01
oval:org.opensuse.security:def:19767
P
Security update for ntp (Important)
2020-12-01
oval:org.opensuse.security:def:29629
P
Security update for clamav
2020-12-01
oval:org.opensuse.security:def:18803
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:27182
P
libexif on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:41827
P
Security update for qemu (Moderate)
2020-12-01
oval:org.opensuse.security:def:28214
P
Security update for libpng12-0 (Moderate)
2020-12-01
oval:org.opensuse.security:def:40566
P
Security update for wget (Important)
2020-12-01
oval:org.opensuse.security:def:28891
P
Security update for dhcpcd (Important)
2020-12-01
oval:org.opensuse.security:def:56875
P
Security update for gd (Moderate)
2020-12-01
oval:org.opensuse.security:def:29579
P
Security update for apache2 (Moderate)
2020-12-01
oval:org.opensuse.security:def:41433
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:32885
P
jakarta-commons-httpclient3 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:19090
P
Security update for LibVNCServer (Important)
2020-12-01
oval:org.opensuse.security:def:30843
P
Security update for cyrus-imapd (Important)
2020-12-01
oval:org.opensuse.security:def:33468
P
Security update for Linux kernel
2020-12-01
oval:org.opensuse.security:def:30747
P
Security update for ansible (Moderate)
2020-12-01
oval:org.opensuse.security:def:56563
P
Security update for libsoup (Moderate)
2020-12-01
oval:org.opensuse.security:def:41183
P
Security update for gcc9 (Moderate)
2020-12-01
oval:org.opensuse.security:def:26681
P
curl on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:34723
P
Security update for ImageMagick (Important)
2020-12-01
oval:org.opensuse.security:def:18987
P
Security update for bzip2 (Important)
2020-12-01
oval:org.opensuse.security:def:19313
P
Security update for mariadb-100 (Moderate)
2020-12-01
oval:org.opensuse.security:def:28495
P
Recommended update for openldap2 (Moderate)
2020-12-01
oval:org.opensuse.security:def:40846
P
Security update for ucode-intel (Important)
2020-12-01
oval:org.opensuse.security:def:34109
P
Security update for mutt
2020-12-01
oval:org.opensuse.security:def:41000
P
Security update for webkit2gtk3 (Important)
2020-12-01
oval:org.opensuse.security:def:32434
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:29809
P
Security update for jakarta-commons-fileupload (Important)
2020-12-01
oval:org.opensuse.security:def:35203
P
Security update for libevent
2020-12-01
oval:org.opensuse.security:def:28203
P
Security update for libidn (Moderate)
2020-12-01
oval:org.opensuse.security:def:55595
P
Security update for icedtea-web (Moderate)
2020-12-01
oval:org.opensuse.security:def:31045
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:18659
P
Security update for freetype2 (Important)
2020-12-01
oval:org.opensuse.security:def:26947
P
libexif on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:35029
P
Security update for guile (Low)
2020-12-01
oval:org.opensuse.security:def:30806
P
Security update for clamav (Important)
2020-12-01
oval:org.opensuse.security:def:40322
P
Security update for the Linux Kernel (Live Patch 28 for SLE 12 SP1) (Important)
2020-12-01
oval:org.opensuse.security:def:19492
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:28788
P
Security update for mutt
2020-12-01
oval:org.opensuse.security:def:56763
P
Security update for libreoffice (Moderate)
2020-12-01
oval:org.opensuse.security:def:34217
P
Security update for php5 (Moderate)
2020-12-01
oval:org.opensuse.security:def:41255
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:32672
P
glib2 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:27381
P
cpp48 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:33376
P
Security update for sap_suse_cluster_connector
2020-12-01
oval:org.opensuse.security:def:30600
P
Security update for PostgreSQL
2020-12-01
oval:org.opensuse.security:def:34060
P
Security update for libxcrypt
2020-12-01
oval:org.opensuse.security:def:19779
P
Security update for mariadb (Moderate)
2020-12-01
oval:org.opensuse.security:def:31874
P
Security update for cyrus-imapd (Important)
2020-12-01
oval:com.ubuntu.cosmic:def:201580780000000
V
CVE-2015-8078 on Ubuntu 18.10 (cosmic) - medium.
2015-12-03
oval:com.ubuntu.artful:def:20158078000
V
CVE-2015-8078 on Ubuntu 17.10 (artful) - untriaged.
2015-12-03
oval:com.ubuntu.trusty:def:20158078000
V
CVE-2015-8078 on Ubuntu 14.04 LTS (trusty) - medium.
2015-12-03
oval:com.ubuntu.bionic:def:201580780000000
V
CVE-2015-8078 on Ubuntu 18.04 LTS (bionic) - medium.
2015-12-03
oval:com.ubuntu.bionic:def:20158078000
V
CVE-2015-8078 on Ubuntu 18.04 LTS (bionic) - medium.
2015-12-03
oval:com.ubuntu.xenial:def:20158078000
V
CVE-2015-8078 on Ubuntu 16.04 LTS (xenial) - medium.
2015-12-03
oval:com.ubuntu.xenial:def:201580780000000
V
CVE-2015-8078 on Ubuntu 16.04 LTS (xenial) - medium.
2015-12-03
oval:com.ubuntu.cosmic:def:20158078000
V
CVE-2015-8078 on Ubuntu 18.10 (cosmic) - medium.
2015-12-03
oval:com.ubuntu.disco:def:201580780000000
V
CVE-2015-8078 on Ubuntu 19.04 (disco) - medium.
2015-12-03
oval:com.ubuntu.precise:def:20158078000
V
CVE-2015-8078 on Ubuntu 12.04 LTS (precise) - untriaged.
2015-12-03
BACK