Popclient Email Message Buffer Overflow Vulnerability
BID:10625
Info
Popclient Email Message Buffer Overflow Vulnerability
| Bugtraq ID: | 10625 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2004-0666 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 29 2004 12:00AM |
| Updated: | Jul 12 2009 05:16AM |
| Credit: | This issue has been disclosed by Dean White <[email protected]>. |
| Vulnerable: |
popclient popclient 3.0 b6 |
| Not Vulnerable: | |
Discussion
Popclient Email Message Buffer Overflow Vulnerability
It has been reported that popclient is affected by an off by one buffer overflow vulnerability. This issue is due to a failure of the application to properly manage static stack-based buffers.
Successful exploitation of this issue may cause a denial of service condition in the affected application; it is unlikely that this issue could be leveraged to execute code, however it may be possible.
It has been reported that popclient is affected by an off by one buffer overflow vulnerability. This issue is due to a failure of the application to properly manage static stack-based buffers.
Successful exploitation of this issue may cause a denial of service condition in the affected application; it is unlikely that this issue could be leveraged to execute code, however it may be possible.
Exploit / POC
Popclient Email Message Buffer Overflow Vulnerability
No exploit is required to leverage this issue.
No exploit is required to leverage this issue.
Solution / Fix
Popclient Email Message Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Popclient Email Message Buffer Overflow Vulnerability
References:
References:
- The Unficial popclient Page (popclient)
- DoS in popclient 3.0b6 (Dean White
)