CNNVD-202510-703 Information

CNNVD ID

CNNVD-202510-703

CVE-2025-61962

  • CNNVD Published: 2025-10-04

Description (Chinese)

Fetchmail是一个下载邮件的应用程序。 Fetchmail 6.5.6之前版本存在安全漏洞,该漏洞源于SMTP客户端在畸形环境中接收334状态码时进行身份验证,可能导致崩溃。

Description (English)

Fetchmail is an application for downloading mail. A security loophole existed in the previous version of Fetchmail 6.5.6, which resulted from the identification of the SMTP client when receiving 334 status codes in a deformed environment, which could lead to a breakdown.

Hazard Level

High

Vulnerability Type

其他

Published

2025-10-04

Last Modified

2026-02-24

References

https://www.openwall.com/lists/oss-security/2025/10/03/2 https://www.fetchmail.info/fetchmail-SA-2025-01.txt https://gitlab.com/fetchmail/fetchmail/-/commit/4c3cebfa4e659fb778ca2cae0ccb3f69201609a8 https://vigilance.fr/vulnerability/fetchmail-denial-of-service-via-SMTP-AUTH-48392

Patch

https://www.fetchmail.info/

Share on: