Vulnerability Database

389,307

Total vulnerabilities in the database

CVE-2006-5973 — timo_sirainen / dovecot

Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file.

  • Published: Nov 20, 2006
  • Updated: Sep 24, 2026
  • CVE: CVE-2006-5973
  • Severity: Medium
  • Exploit:
  • CISA KEV:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

No CWE or OWASP classifications available.

Software Affected versions
timo_sirainen / dovecot = 1.0
timo_sirainen / dovecot = 1.0.alpha1
timo_sirainen / dovecot = 1.0.alpha2
timo_sirainen / dovecot = 1.0.alpha3
timo_sirainen / dovecot = 1.0.alpha4
timo_sirainen / dovecot = 1.0.alpha5
timo_sirainen / dovecot = 1.0.beta1
timo_sirainen / dovecot = 1.0.beta2
timo_sirainen / dovecot = 1.0.beta3
timo_sirainen / dovecot = 1.0.beta4
timo_sirainen / dovecot = 1.0.beta5
timo_sirainen / dovecot = 1.0.beta6
timo_sirainen / dovecot = 1.0.beta7
timo_sirainen / dovecot = 1.0.beta8
timo_sirainen / dovecot = 1.0.beta9
timo_sirainen / dovecot = 1.0.rc1
timo_sirainen / dovecot = 1.0.rc2
timo_sirainen / dovecot = 1.0.rc3
timo_sirainen / dovecot = 1.0.rc4
timo_sirainen / dovecot = 1.0.rc5
timo_sirainen / dovecot = 1.0.rc6
timo_sirainen / dovecot = 1.0.rc7
timo_sirainen / dovecot = 1.0.rc8
timo_sirainen / dovecot = 1.0.rc9
timo_sirainen / dovecot = 1.0.rc10
timo_sirainen / dovecot = 1.0.rc11
timo_sirainen / dovecot = 1.0.rc12
timo_sirainen / dovecot = 1.0.rc13
timo_sirainen / dovecot = 1.0.rc14
timo_sirainen / dovecot = 1.0.test53
timo_sirainen / dovecot = 1.0.test54
timo_sirainen / dovecot = 1.0.test55
timo_sirainen / dovecot = 1.0.test56
timo_sirainen / dovecot = 1.0.test57
timo_sirainen / dovecot = 1.0.test58
timo_sirainen / dovecot = 1.0.test59
timo_sirainen / dovecot = 1.0.test60
timo_sirainen / dovecot = 1.0.test61
timo_sirainen / dovecot = 1.0.test62
timo_sirainen / dovecot = 1.0.test63
timo_sirainen / dovecot = 1.0.test64
timo_sirainen / dovecot = 1.0.test65
timo_sirainen / dovecot = 1.0.test66
timo_sirainen / dovecot = 1.0.test67
timo_sirainen / dovecot = 1.0.test68
timo_sirainen / dovecot = 1.0.test69
timo_sirainen / dovecot = 1.0.test70
timo_sirainen / dovecot = 1.0.test71
timo_sirainen / dovecot = 1.0.test72
timo_sirainen / dovecot = 1.0.test73
timo_sirainen / dovecot = 1.0.test74
timo_sirainen / dovecot = 1.0.test75
timo_sirainen / dovecot = 1.0.test76
timo_sirainen / dovecot = 1.0.test77
timo_sirainen / dovecot = 1.0.test78
timo_sirainen / dovecot = 1.0.test79
timo_sirainen / dovecot = 1.0.test80

Frequently Asked Questions

A security vulnerability is a weakness in software, hardware, or configuration that can be exploited to compromise confidentiality, integrity, or availability. Many vulnerabilities are tracked as CVEs (Common Vulnerabilities and Exposures), which provide a standardized identifier so teams can coordinate patching, mitigation, and risk assessment across tools and vendors.

CVSS (Common Vulnerability Scoring System) estimates technical severity, but it doesn't automatically equal business risk. Prioritize using context like internet exposure, affected asset criticality, known exploitation (proof-of-concept or in-the-wild), and whether compensating controls exist. A "Medium" CVSS on an exposed, production system can be more urgent than a "Critical" on an isolated, non-production host.

A vulnerability is the underlying weakness. An exploit is the method or code used to take advantage of it. A zero-day is a vulnerability that is unknown to the vendor or has no publicly available fix when attackers begin using it. In practice, risk increases sharply when exploitation becomes reliable or widespread.

Recurring findings usually come from incomplete Asset Discovery, inconsistent patch management, inherited images, and configuration drift. In modern environments, you also need to watch the software supply chain: dependencies, containers, build pipelines, and third-party services can reintroduce the same weakness even after you patch a single host. Unknown or unmanaged assets (often called Shadow IT) are a common reason the same issues resurface.

Use a simple, repeatable triage model: focus first on externally exposed assets, high-value systems (identity, VPN, email, production), vulnerabilities with known exploits, and issues that enable remote code execution or privilege escalation. Then enforce patch SLAs and track progress using consistent metrics so remediation is steady, not reactive.

SynScan combines attack surface monitoring and continuous security auditing to keep your inventory current, flag high-impact vulnerabilities early, and help you turn raw findings into a practical remediation plan.