← Back

Libetpan Project

libetpan_project

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Libetpan
libetpan

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Libetpan Project
1Libetpan
Nov 3, 2025
Jan 17, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
In libetpan a null pointer dereference in mailimap_mailbox_data_status_free in low-level/imap/mailimap_types.c was found that could lead to a remote denial of service or other potential consequences.
4Debian
FedoraprojectLibetpan Project+1 more
4Debian Linux
FedoraLibetpan+1 more
Nov 21, 2024
Jul 27, 2020
N/A· v4
7.4 HIGH· v3
5.8 MEDIUM· v2
LibEtPan through 1.9.4, as used in MailCore 2 through 0.6.3 and other products, has a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the client reads additional da...Show more
LibEtPan through 1.9.4, as used in MailCore 2 through 0.6.3 and other products, has a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the client reads additional data (e.g., from a meddler-in-the-middle attacker) and evaluates it in a TLS context, aka "response injection."Show less
1Libetpan Project
1Libetpan
May 13, 2026
May 8, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
A null dereference vulnerability has been found in the MIME handling component of LibEtPan before 1.8, as used in MailCore and MailCore 2. A crash can occur in low-level/imf/mailimf.c during a failed parse of a Cc header...Show more
A null dereference vulnerability has been found in the MIME handling component of LibEtPan before 1.8, as used in MailCore and MailCore 2. A crash can occur in low-level/imf/mailimf.c during a failed parse of a Cc header containing multiple e-mail addresses.Show less