Outlook Express POP Denial of Service Vulnerability
BID:252
Info
Outlook Express POP Denial of Service Vulnerability
| Bugtraq ID: | 252 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-1999-1033 |
| Remote: | Yes |
| Local: | No |
| Published: | May 11 1999 12:00AM |
| Updated: | Jul 11 2009 12:16AM |
| Credit: | This vulnerability was published in the BUGTRAQ mailing list by Miquel van Smoorenburg <[email protected]>. |
| Vulnerable: |
Microsoft Outlook Express 4.72.3120 Microsoft Outlook Express 4.27.3110 |
| Not Vulnerable: |
Microsoft Outlook Express 4.72.3612 |
Exploit / POC
Outlook Express POP Denial of Service Vulnerability
Include a few thousand lines like this in an email and the bug will trigger:
So
.
this
.
might
.
actually
.
cause
.
the
.
Include a few thousand lines like this in an email and the bug will trigger:
So
.
this
.
might
.
actually
.
cause
.
the
.
Solution / Fix
Outlook Express POP Denial of Service Vulnerability
Solution:
You must remove the message using some other POP3 email program or remove it manually at the server.
Solution:
You must remove the message using some other POP3 email program or remove it manually at the server.
References
Outlook Express POP Denial of Service Vulnerability
References:
References: