Vulnerability Description
spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Double Precision Incorporated | Courier Mail Server | 0.46 |
References
- http://secunia.com/advisories/15901Vendor Advisory
- http://www.courier-mta.org/?changelog.html
- http://secunia.com/advisories/15901Vendor Advisory
- http://www.courier-mta.org/?changelog.html
FAQ
What is CVE-2005-2151?
CVE-2005-2151 is a vulnerability with a CVSS score of 5.0 (MEDIUM). spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption.
How severe is CVE-2005-2151?
CVE-2005-2151 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-2151?
Check the references section above for vendor advisories and patch information. Affected products include: Double Precision Incorporated Courier Mail Server.