Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4882 articles · 221206 vulns · 37/41 feeds (7d)
← Back to list
8.1
CVE-2026-94184EXPLOITED
red hat · red hat enterprise linux

Fetchmail: fetchmail: stack-based buffer overflow in ntlm authentication (fetchmail-sa-2026-01)

Description

A stack-based buffer overflow flaw was found in fetchmail when built with NTLM support. A malicious or compromised mail server advertising NTLM authentication can send a crafted Type 2 challenge that causes fetchmail to write past a fixed stack buffer while building the NTLM authenticate response. This may lead to remote code execution depending on stack-frame layout, or to authentication failure or process termination under memory hardening. Affects v5.0.8 through v6.6.6.

Affected Products

VendorProductVersions
red hatred hat enterprise linux—

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourcefetchmailcert_advisory90%

References

  • https://access.redhat.com/security/cve/CVE-2026-94184(vdb-entry, x_refsource_REDHAT)
  • https://bugzilla.redhat.com/show_bug.cgi?id=2537395(issue-tracking, x_refsource_REDHAT)
  • https://gitlab.com/fetchmail/fetchmail/-/commit/cb5be5c38471eec19e519ace0bc569176317ea92
  • https://www.fetchmail.info/fetchmail-SA-2026-01.txt
  • https://www.openwall.com/lists/oss-security/2026/06/27/8

Related News (3 articles)

Tier C
oss-security5h ago
CVE-2026-94184: some builds of fetchmail 6.6.6 and older vulnerable to remote code execution in NTLM authentication client (revised fetchmail-SA-2026-01)
→ No new info (linked only)
Tier B
BSI Advisories19h ago
[NEU] [hoch] fetchmail: Schwachstelle ermöglicht Codeausführung
→ No new info (linked only)
Tier C
VulDB1d ago
CVE-2026-94184 | Red Hat Enterprise Linux fetchmail buffer overflow
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.18.1 NONE
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-121
PublishedSep 21, 2026
Last enriched1d ago
Tags
remote code executionfile manipulationdenial of servicemultiple vulnerabilities
Trending Score59
Source articles3
Independent3
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-87766EXP
Bubblewrap: bubblewrap: symlink traversal via /oldroot allows writing files outside sandbox during setup
Trending: 55
NONECVE-2026-93676EXP
Xdg-dbus-proxy: xdg-dbus-proxy: filtering for broadcast messages bypasses path/interface/member checks
Trending: 49
NONECVE-2026-93558
Io.netty/netty-codec-http: netty: unbounded per-connection queue growth in websocketserverextensionhandler leads to denial of service
Trending: 41
NONECVE-2026-93562
Io.netty/netty-codec-http: netty: incomplete validation of malformed transfer-encoding allows http request smuggling
Trending: 41
NONECVE-2026-95511
Cups: cups-filters: cups-filters: lpadmin can escalate to root via privileged serial backend (cups2root)
Trending: 41

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Sep 21, 2026
Discovered by ZDM
Sep 21, 2026
Actively Exploited
Sep 23, 2026
Exploit Available
Sep 23, 2026