Microsoft Exchange Server 2003 Exchange Information Store Denial Of Service Vulnerability
BID:14772
Info
Microsoft Exchange Server 2003 Exchange Information Store Denial Of Service Vulnerability
| Bugtraq ID: | 14772 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 02 2005 12:00AM |
| Updated: | Sep 02 2005 12:00AM |
| Credit: | This issue was announced by the vendor. |
| Vulnerable: |
Microsoft Exchange Server 2003 SP1 Microsoft Exchange Server 2003 |
| Not Vulnerable: | |
Discussion
Microsoft Exchange Server 2003 Exchange Information Store Denial Of Service Vulnerability
Microsoft Exchange Server 2003 is prone to a denial of service vulnerability. This condition may occur in some circumstances when an IMAP4 user tries to list public folders.
The condition will cause the Exchange Information Store service (Store.exe) to crash.
Microsoft Exchange Server 2003 is prone to a denial of service vulnerability. This condition may occur in some circumstances when an IMAP4 user tries to list public folders.
The condition will cause the Exchange Information Store service (Store.exe) to crash.
Exploit / POC
Microsoft Exchange Server 2003 Exchange Information Store Denial Of Service Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
Microsoft Exchange Server 2003 Exchange Information Store Denial Of Service Vulnerability
Solution:
A hotfix to address this issue may be obtained by contacting Microsoft Product Support Services. Please see the attached knowledge base article for further details.
Solution:
A hotfix to address this issue may be obtained by contacting Microsoft Product Support Services. Please see the attached knowledge base article for further details.
References
Microsoft Exchange Server 2003 Exchange Information Store Denial Of Service Vulnerability
References:
References:
- Knowledge Base Article - 840123 (Microsoft)