Vulnerabilites related to double_precision_incorporated - sqwebmail
Vulnerability from fkie_nvd
Published
2004-04-15 04:00
Modified
2025-04-03 01:03
Severity ?
Summary
Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code "when Unicode character is out of BMP range."



{
  "configurations": [
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:courier_mta:0.43:*:*:*:*:*:*:*",
              "matchCriteriaId": "59676325-66F3-42EA-935B-1436961E3B50",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:courier_mta:0.43.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "A801771F-0CBF-40DC-91F2-D4C885B28FD2",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:courier_mta:0.43.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "D2464DEE-21EF-40B6-A691-6B8A89DED2B8",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:courier_mta:0.44:*:*:*:*:*:*:*",
              "matchCriteriaId": "CA66C89A-F87F-4854-A358-2E8377DD431D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:courier_mta:0.44.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "2D580A21-C0E9-40F1-ADC2-0DD17D51909B",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:sqwebmail:3.5.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "49F81672-03E5-4F7A-91B9-5CA22F97DEA7",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:sqwebmail:3.5.3:*:*:*:*:*:*:*",
              "matchCriteriaId": "F19F4FF8-5736-40E5-9B77-1239EC32E4A1",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:sqwebmail:3.6.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "4F34BDC5-1BB5-42B5-A69F-A3B4C2F4A0EA",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:sqwebmail:3.6.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "714A150C-6D9D-4A31-958D-F1A1EBE4F3A9",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:double_precision_incorporated:sqwebmail:3.6_.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "D4E759B1-C7FF-447A-882D-7F9C8D35D744",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:1.6:*:*:*:*:*:*:*",
              "matchCriteriaId": "CE124EB9-DA25-459A-83A2-43E8A0AC0EF7",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:1.7:*:*:*:*:*:*:*",
              "matchCriteriaId": "6A41204F-5DF0-48C3-A6EA-BEB9F16AD819",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:2.0.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "D2EEAB62-A508-4138-8633-9EC55FA9BA70",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:2.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "FB2AC82C-77EE-4FF1-BFCB-F3C05FE7D77D",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:2.1.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "1CBF3328-97BF-4C82-B99A-1C0C55E63716",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:2.1.2:*:*:*:*:*:*:*",
              "matchCriteriaId": "C2C8E71C-8CD0-491F-9531-EBB909F540BE",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:2.2.0:*:*:*:*:*:*:*",
              "matchCriteriaId": "4EE24695-FA49-4323-8A57-E4E618FAD45E",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:a:inter7:courier-imap:2.2.1:*:*:*:*:*:*:*",
              "matchCriteriaId": "803700EC-E4E9-45DB-9024-4FDE322BB783",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ]
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:gentoo:linux:1.4:*:*:*:*:*:*:*",
              "matchCriteriaId": "65ED9D8C-604D-4B0B-A192-C0DA4D2E9AEB",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:gentoo:linux:1.4:rc1:*:*:*:*:*:*",
              "matchCriteriaId": "D1FD0EB4-E744-4465-AFEE-A3C807C9C993",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:gentoo:linux:1.4:rc2:*:*:*:*:*:*",
              "matchCriteriaId": "1D866A7D-F0B9-4EA3-93C6-1E7C2C2A861F",
              "vulnerable": true
            },
            {
              "criteria": "cpe:2.3:o:gentoo:linux:1.4:rc3:*:*:*:*:*:*",
              "matchCriteriaId": "57772E3B-893C-408A-AA3B-78C972ED4D5E",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ]
    }
  ],
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code \"when Unicode character is out of BMP range.\""
    },
    {
      "lang": "es",
      "value": "M\u00faltiples desobordamientos de b\u00fafer en (1) iso2022jp.c o (2) shiftjis.c  de Courier-IMAP anteriores a 3.0.0, Courier anteriores a 0.45, y SQWebMail anteriores a 4.0.0 pueden permitir a atacantes remotos ejecutar c\u00f3digo arbitrario \"cuando el car\u00e1cter Unicode est\u00e1 fuera de rango BMP\"."
    }
  ],
  "id": "CVE-2004-0224",
  "lastModified": "2025-04-03T01:03:51.193",
  "metrics": {
    "cvssMetricV2": [
      {
        "acInsufInfo": false,
        "baseSeverity": "HIGH",
        "cvssData": {
          "accessComplexity": "LOW",
          "accessVector": "NETWORK",
          "authentication": "NONE",
          "availabilityImpact": "PARTIAL",
          "baseScore": 7.5,
          "confidentialityImpact": "PARTIAL",
          "integrityImpact": "PARTIAL",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "version": "2.0"
        },
        "exploitabilityScore": 10.0,
        "impactScore": 6.4,
        "obtainAllPrivilege": false,
        "obtainOtherPrivilege": true,
        "obtainUserPrivilege": false,
        "source": "nvd@nist.gov",
        "type": "Primary",
        "userInteractionRequired": false
      }
    ]
  },
  "published": "2004-04-15T04:00:00.000",
  "references": [
    {
      "source": "cve@mitre.org",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "url": "http://secunia.com/advisories/11087/"
    },
    {
      "source": "cve@mitre.org",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://sourceforge.net/project/shownotes.php?release_id=5767"
    },
    {
      "source": "cve@mitre.org",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "url": "http://www.securityfocus.com/bid/9845"
    },
    {
      "source": "cve@mitre.org",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15434"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "url": "http://secunia.com/advisories/11087/"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Vendor Advisory"
      ],
      "url": "http://sourceforge.net/project/shownotes.php?release_id=5767"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "url": "http://www.securityfocus.com/bid/9845"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15434"
    }
  ],
  "sourceIdentifier": "cve@mitre.org",
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ],
      "source": "nvd@nist.gov",
      "type": "Primary"
    }
  ]
}

CVE-2004-0224 (GCVE-0-2004-0224)
Vulnerability from cvelistv5
Published
2004-03-16 05:00
Modified
2024-08-08 00:10
Severity ?
CWE
  • n/a
Summary
Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code "when Unicode character is out of BMP range."
References
Impacted products
Vendor Product Version
n/a n/a Version: n/a
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "providerMetadata": {
          "dateUpdated": "2024-08-08T00:10:03.739Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "tags": [
              "x_refsource_CONFIRM",
              "x_transferred"
            ],
            "url": "http://sourceforge.net/project/shownotes.php?release_id=5767"
          },
          {
            "name": "courier-codeset-converter-bo(15434)",
            "tags": [
              "vdb-entry",
              "x_refsource_XF",
              "x_transferred"
            ],
            "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15434"
          },
          {
            "name": "11087",
            "tags": [
              "third-party-advisory",
              "x_refsource_SECUNIA",
              "x_transferred"
            ],
            "url": "http://secunia.com/advisories/11087/"
          },
          {
            "name": "9845",
            "tags": [
              "vdb-entry",
              "x_refsource_BID",
              "x_transferred"
            ],
            "url": "http://www.securityfocus.com/bid/9845"
          }
        ],
        "title": "CVE Program Container"
      }
    ],
    "cna": {
      "affected": [
        {
          "product": "n/a",
          "vendor": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ],
      "datePublic": "2004-03-11T00:00:00",
      "descriptions": [
        {
          "lang": "en",
          "value": "Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code \"when Unicode character is out of BMP range.\""
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "description": "n/a",
              "lang": "en",
              "type": "text"
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2017-07-10T14:57:01",
        "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "shortName": "mitre"
      },
      "references": [
        {
          "tags": [
            "x_refsource_CONFIRM"
          ],
          "url": "http://sourceforge.net/project/shownotes.php?release_id=5767"
        },
        {
          "name": "courier-codeset-converter-bo(15434)",
          "tags": [
            "vdb-entry",
            "x_refsource_XF"
          ],
          "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15434"
        },
        {
          "name": "11087",
          "tags": [
            "third-party-advisory",
            "x_refsource_SECUNIA"
          ],
          "url": "http://secunia.com/advisories/11087/"
        },
        {
          "name": "9845",
          "tags": [
            "vdb-entry",
            "x_refsource_BID"
          ],
          "url": "http://www.securityfocus.com/bid/9845"
        }
      ],
      "x_legacyV4Record": {
        "CVE_data_meta": {
          "ASSIGNER": "cve@mitre.org",
          "ID": "CVE-2004-0224",
          "STATE": "PUBLIC"
        },
        "affects": {
          "vendor": {
            "vendor_data": [
              {
                "product": {
                  "product_data": [
                    {
                      "product_name": "n/a",
                      "version": {
                        "version_data": [
                          {
                            "version_value": "n/a"
                          }
                        ]
                      }
                    }
                  ]
                },
                "vendor_name": "n/a"
              }
            ]
          }
        },
        "data_format": "MITRE",
        "data_type": "CVE",
        "data_version": "4.0",
        "description": {
          "description_data": [
            {
              "lang": "eng",
              "value": "Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code \"when Unicode character is out of BMP range.\""
            }
          ]
        },
        "problemtype": {
          "problemtype_data": [
            {
              "description": [
                {
                  "lang": "eng",
                  "value": "n/a"
                }
              ]
            }
          ]
        },
        "references": {
          "reference_data": [
            {
              "name": "http://sourceforge.net/project/shownotes.php?release_id=5767",
              "refsource": "CONFIRM",
              "url": "http://sourceforge.net/project/shownotes.php?release_id=5767"
            },
            {
              "name": "courier-codeset-converter-bo(15434)",
              "refsource": "XF",
              "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/15434"
            },
            {
              "name": "11087",
              "refsource": "SECUNIA",
              "url": "http://secunia.com/advisories/11087/"
            },
            {
              "name": "9845",
              "refsource": "BID",
              "url": "http://www.securityfocus.com/bid/9845"
            }
          ]
        }
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
    "assignerShortName": "mitre",
    "cveId": "CVE-2004-0224",
    "datePublished": "2004-03-16T05:00:00",
    "dateReserved": "2004-03-15T00:00:00",
    "dateUpdated": "2024-08-08T00:10:03.739Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.1"
}