Ipswitch IMail Server and Collaboration Suite SMTP Daemon Stack Overflow Vulnerability
BID:19885
CVE-2006-4379 |Info
Ipswitch IMail Server and Collaboration Suite SMTP Daemon Stack Overflow Vulnerability
| Bugtraq ID: | 19885 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-4379 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 07 2006 12:00AM |
| Updated: | Feb 05 2007 04:18PM |
| Credit: | This vulnerability was disclosed by the vendor. |
| Vulnerable: |
Ipswitch Ipswitch Collaboration Suite Standard Edition 2006 Ipswitch Ipswitch Collaboration Suite Premium Edition 2006 Ipswitch IMail Server 2006 Ipswitch IMail Secure Server 2006 Ipswitch IMail Plus 0 |
| Not Vulnerable: |
Ipswitch Ipswitch Collaboration Suite Standard Edition 2006.1 Ipswitch Ipswitch Collaboration Suite Premium Edition 2006.1 Ipswitch IMail Server 2006.1 |
Discussion
Ipswitch IMail Server and Collaboration Suite SMTP Daemon Stack Overflow Vulnerability
Ipswitch IMail Server and Collaboration Suite are prone to a stack-overflow vulnerability. Updates are available.
This vulnerability may lead to remote arbitrary code execution or denial-of-service conditions.
Ipswitch Collaboration 2006 Suite Premium and Standard Editions, IMail, IMail Plus, and IMail Secure are vulnerable.
Ipswitch IMail Server and Collaboration Suite are prone to a stack-overflow vulnerability. Updates are available.
This vulnerability may lead to remote arbitrary code execution or denial-of-service conditions.
Ipswitch Collaboration 2006 Suite Premium and Standard Editions, IMail, IMail Plus, and IMail Secure are vulnerable.
Exploit / POC
Ipswitch IMail Server and Collaboration Suite SMTP Daemon Stack Overflow Vulnerability
An exploit is available for members of the Immunity Partners program. It may be obtained at the following location:
https://www.immunityinc.com/downloads/immpartners/imail_rcptoverflow.tar
An additional exploit by Greg Linares is now available.
The following Metasploit exploit module and exploit written in Perl are available:
An exploit is available for members of the Immunity Partners program. It may be obtained at the following location:
https://www.immunityinc.com/downloads/immpartners/imail_rcptoverflow.tar
An additional exploit by Greg Linares is now available.
The following Metasploit exploit module and exploit written in Perl are available:
Solution / Fix
Ipswitch IMail Server and Collaboration Suite SMTP Daemon Stack Overflow Vulnerability
Solution:
The vendor has released fixes to address this issue. Please see the vendor reference for more information.
Ipswitch IMail Secure Server 2006
Ipswitch IMail Server 2006
Ipswitch Ipswitch Collaboration Suite Premium Edition 2006
Ipswitch Ipswitch Collaboration Suite Standard Edition 2006
Solution:
The vendor has released fixes to address this issue. Please see the vendor reference for more information.
Ipswitch IMail Secure Server 2006
-
Ipswitch IMail Secure 2006.1
ftp://ftp.ipswitch.com/Ipswitch/Product_Downloads/IMail_Secure.exe
Ipswitch IMail Server 2006
-
Ipswitch IMail 2006.1
ftp://ftp.ipswitch.com/Ipswitch/Product_Downloads/IMail.exe
Ipswitch Ipswitch Collaboration Suite Premium Edition 2006
-
Ipswitch Ipswitch Collaboration Suite 2006.1
ftp://ftp.ipswitch.com/Ipswitch/Product_Downloads/ICS_Premium.exe
Ipswitch Ipswitch Collaboration Suite Standard Edition 2006
-
Ipswitch Ipswitch Collaboration Suite 2006.1
ftp://ftp.ipswitch.com/Ipswitch/Product_Downloads/ICS_Standard.exe
References
Ipswitch IMail Server and Collaboration Suite SMTP Daemon Stack Overflow Vulnerability
References:
References: