Rit Research Labs The Bat! MS DOS Device Name Denial Of Service Vulnerability
BID:4187
Info
Rit Research Labs The Bat! MS DOS Device Name Denial Of Service Vulnerability
| Bugtraq ID: | 4187 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2002-0338 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 27 2002 12:00AM |
| Updated: | Jul 11 2009 10:56AM |
| Credit: | This issue was reported to BugTraq by 3APA3A <[email protected]>. |
| Vulnerable: |
Rit Research Labs The Bat! 1.53 d |
| Not Vulnerable: | |
Discussion
Rit Research Labs The Bat! MS DOS Device Name Denial Of Service Vulnerability
The Bat! is an e-mail client for Microsoft Windows operating systems.
A problem occurs with The Bat! when it is configured to save attachments seperately from the body of a message. It is possible to include a MS-DOS device name (such as CON, AUX, PRN, etc.) in the filename of the attachment to cause a denial of service to an e-mail client with this configuration.
This appears to be an issue with The Bat! version 1.53d. Earlier versions do not appear to be affected.
The Bat! is an e-mail client for Microsoft Windows operating systems.
A problem occurs with The Bat! when it is configured to save attachments seperately from the body of a message. It is possible to include a MS-DOS device name (such as CON, AUX, PRN, etc.) in the filename of the attachment to cause a denial of service to an e-mail client with this configuration.
This appears to be an issue with The Bat! version 1.53d. Earlier versions do not appear to be affected.
Exploit / POC
Rit Research Labs The Bat! MS DOS Device Name Denial Of Service Vulnerability
This condition can be repoduced with the following example:
bash-2.03$ sendmail -U [email protected]
From: test
To: test
Content-Type: apllication/exe; name=lpt1
Test
.
This condition can be repoduced with the following example:
bash-2.03$ sendmail -U [email protected]
From: test
To: test
Content-Type: apllication/exe; name=lpt1
Test
.
Solution / Fix
Rit Research Labs The Bat! MS DOS Device Name Denial Of Service Vulnerability
Solution:
Verions prior to 1.53d appear not to be vulnerable, so affected users may potentially downgrade their e-mail client to an earlier version.
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Verions prior to 1.53d appear not to be vulnerable, so affected users may potentially downgrade their e-mail client to an earlier version.
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Rit Research Labs The Bat! MS DOS Device Name Denial Of Service Vulnerability
References:
References: