Secunia
|
|

|
|
|
|
|
|
|
Release Date: 2007-08-20 Last Update: 2007-08-28 Views: 11,028
Where:
From remote
Impact:
System access,
Solution Status:
Vendor Patch
CVE Reference(s):
eliteb0y has discovered a vulnerability in Mercury Mail Transport System, which can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to a boundary error within Mercury/32 SMTP Server Module (mercurys.dll) when processing arguments to the AUTH CRAM-MD5 command. This can be exploited to cause a stack-based buffer overflow via an overly long, specially-crafted argument passed to the affected command.
Successful exploitation allows execution of arbitrary code.
The vulnerability is confirmed in version 4.51. Other versions may also be affected.
Solution:
Update to version 4.52.
Further details available to Secunia VIM customers
Provided and/or discovered by:
eliteb0y
Original Advisory:
Mercury:
http://www.pmail.com/m32_451.htm
http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065357.html
Deep Links:
Links available to Secunia VIM customers
Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com
Subject: Mercury Mail Transport System SMTP AUTH CRAM-MD5 Buffer Overflow
|
No posts yet |
|
You must be logged in to post a comment. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |