Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2010-4344

KEV EPSS 51.87% · P98
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2010-4344

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted headers, leading to improper rejection logging.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Exim 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Exim是一个运行于Unix系统中的开源消息传送代理(MTA),它主要负责邮件的路由、转发和投递。 Exim 4.70之前版本存在缓冲区错误漏洞。远程攻击者可以借助包括两个邮件命令结合包含超大特制头消息的SMTP会话执行任意代码。该漏洞将导致不正确地拒绝登陆。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2010-4344

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2010-4344

Please Login to view more intelligence information

Same Patch Batch · n/a · 2010-12-14 · 29 CVEs total

CVE-2010-4383RealNetworks RealPlayer RA5文件堆缓冲区溢出漏洞
CVE-2010-4397RealNetworks RealPlayer pnen3260.dll模块整数溢出漏洞
CVE-2010-4396RealNetworks RealPlayer HandleAction方法跨域脚本攻击漏洞
CVE-2010-4395RealNetworks RealPlayer堆缓冲区溢出漏洞
CVE-2010-4394RealNetworks RealPlayer HTTP请求堆缓冲区溢出漏洞
CVE-2010-4392RealNetworks RealPlayer ImageMap数据堆缓冲区溢出漏洞
CVE-2010-4391RealNetworks RealPlayer RMX文件堆缓冲区溢出漏洞
CVE-2010-4390RealNetworks RealPlayer IVR文件堆缓冲区溢出漏洞
CVE-2010-4389RealNetworks RealPlayer cook编解码器堆缓冲区溢出漏洞
CVE-2010-4388RealNetworks RealPlayer RealOneActiveXObject进程输入验证漏洞
CVE-2010-4387RealNetworks RealPlayer RealAudio编解码器缓冲区溢出漏洞
CVE-2010-4386RealNetworks RealPlayer RealMedia视频文件缓冲区溢出漏洞
CVE-2010-4385RealNetworks RealPlayer SIPR流整数溢出漏洞
CVE-2010-4384RealNetworks RealPlayer MDPR数组索引错误漏洞
CVE-2010-0121RealNetworks RealPlayer cook编解码器初始化错误漏洞
CVE-2010-4382RealNetworks RealPlayer RealMedia文件多个堆缓冲区溢出漏洞
CVE-2010-4381RealNetworks RealPlayer AAC文件堆缓冲区溢出漏洞
CVE-2010-4380RealNetworks RealPlayer SOUND文件堆缓冲区溢出漏洞
CVE-2010-4379RealNetworks RealPlayer SIPR文件堆缓冲区溢出漏洞
CVE-2010-4378RealNetworks RealPlayer drv2.dll模块缓冲区溢出漏洞

Showing top 20 of 29 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2010-4344

No comments yet


Leave a comment