Sylpheed

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 8
    Known Exploited: 0
    0
    Critical Level Threats
    0
    High Level Threats
    7
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2007-2958

    CVE-2007-2958 claws-mail format string vulnerability

    Last Modified: Apr 23, 2026
    Published: Aug 23, 2007

    CVE-2007-1267

    Sylpheed 2.2.7 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents Sylpheed from visually distinguishing between signed and unsigned portions of OpenPGP messages with multiple components, which allows remote attackers to forge the contents of a message without detection.

    Last Modified: Apr 23, 2026
    Published: Mar 06, 2007

    CVE-2006-2920

    Sylpheed-Claws before 2.2.2 and Sylpheed before 2.2.6 allow remote attackers to bypass the URI check functionality and makes it easier to conduct phishing attacks via a URI that begins with a space character.

    Last Modified: Apr 16, 2026
    Published: Jun 09, 2006

    CVE-2005-3354

    Stack-based buffer overflow in the ldif_get_line function in ldif.c of Sylpheed before 2.1.6 allows user-assisted attackers to execute arbitrary code by having local users import LDIF files with long lines.

    Last Modified: Apr 16, 2026
    Published: Nov 20, 2005

    CVE-2005-0926

    Buffer overflow in Sylpheed before 1.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via attachments with MIME-encoded file names.

    Last Modified: Apr 16, 2026
    Published: Mar 29, 2005
    Items Per Page