CVE-2005-1514 describes a denial-of-service vulnerability in qmail, specifically affecting 64-bit platforms with large virtual memory. A remote attacker can trigger this by sending a long SMTP command without a space, leading to a negative array index reference. The vulnerability has a CVSS score of 5.0, indicating a network-based attack with low complexity, resulting in potential denial of service and possibly arbitrary code execution. While no public exploits like Metasploit or ExploitDB entries exist, there is limited community discussion and media coverage, including a retrospective article.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:dan_bernstein:qmail:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.