This page aggregates publicly disclosed CVE and security risk information related to double_precision_incorporated, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2007-2173 | Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r2, and 4.1.x before 4.1.2-r1, on Gentoo Linux allows remote attackers to execute arbitrary commands via the XMAILDIR variable, related to the LOGINRUN variable. | [email protected] | 10.0 | 3.19% | 2007-04-24 | 2026-04-23 |
| CVE-2006-2659 | libs/comverp.c in Courier MTA before 0.53.2 allows attackers to cause a denial of service (CPU consumption) via unknown vectors involving usernames that contain the "=" (equals) character, which is not properly handled during encoding. | [email protected] | 7.8 | 3.56% | 2006-05-30 | 2026-04-16 |
| CVE-2005-3532 | authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through 0.52.1, when using pam_tally, does not call the pam_acct_mgmt function to verify that access should be granted, which allows attackers to authenticate to the server using accounts that have been disabled. | [email protected] | 7.5 | 0.90% | 2005-12-11 | 2026-04-16 |
| CVE-2005-2151 | spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption. | [email protected] | 5.0 | 0.34% | 2005-07-06 | 2026-04-16 |
| CVE-2004-0224 | Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code "when Unicode character is out of BMP range." | [email protected] | 7.5 | 3.69% | 2004-04-15 | 2026-04-16 |
| CVE-2003-0040 | SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name. | [email protected] | 7.5 | 0.49% | 2003-02-19 | 2026-04-16 |
| CVE-2002-1311 | Courier sqwebmail before 0.40.0 does not quickly drop privileges after startup in certain cases, which could allow local users to read arbitrary files. | [email protected] | 4.6 | 0.07% | 2002-11-29 | 2026-04-16 |
| CVE-2002-0914 | Double Precision Courier e-mail MTA allows remote attackers to cause a denial of service (CPU consumption) via a message with an extremely large or negative value for the year, which causes a tight loop. | [email protected] | 5.0 | 0.81% | 2002-10-04 | 2026-04-16 |