Fetchmail 5.0.8 through 6.3.21, when using NTLM authentication in debug mode, allows remote NTLM servers to (1) cause a denial of service (crash and delayed delivery of inbound mail) via a crafted NTLM response that triggers an out-of-bounds read in the base64 decoder, or (2) obtain sensitive information from memory via an NTLM Type 2 message with a crafted Target Name structure, which triggers an out-of-bounds read.
CVSS Details
- CVSS 3.1 Base Score: 6.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade fetchmail | Aug 30, 2017 | Dec 21, 2012 |
| Debian | — | Upgrade fetchmail | Jul 30, 2024 | Dec 21, 2012 |
| Freebsd | — | Upgrade fetchmail | Dec 10, 2025 | Aug 14, 2012 |
| Oracle Solaris | — | Upgrade mail/fetchmail to version 6.3.22-0.175.0.12.0.3.0 on Solaris 11.0Upgrade mail/fetchmail to version 6.3.22-0.175.1.1.0.1.0 on Solaris 11.1 | May 29, 2017 | Dec 21, 2012 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Aug 13, 2012 |
| Suse | — | Upgrade fetchmailconfUpgrade fetchmail | Apr 26, 2018 | Jun 28, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub