Floosietek FTGate Rcpt to: Flood Denial of Service Vulnerability
BID:4428
Info
Floosietek FTGate Rcpt to: Flood Denial of Service Vulnerability
| Bugtraq ID: | 4428 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 04 2002 12:00AM |
| Updated: | Apr 04 2002 12:00AM |
| Credit: | Credited to Ilya Teterin (aka buggzy) and SECURITY.NNOV. |
| Vulnerable: |
Floosietek FTGatePro 1.0 5 Floosietek FTGateOffice 1.0 5 |
| Not Vulnerable: |
Floosietek FTGateLite 1.0 |
Discussion
Floosietek FTGate Rcpt to: Flood Denial of Service Vulnerability
Floosietek FTGatePRO and FTGateOffice are high performance, feature rich mail servers for the Microsoft Windows operating system.
If a large number of Rcpt to: strings are sent to the FTGate server within a single SMTP conversation, the process will consume 100% CPU. A restart may be required in order to regain normal functionality.
Floosietek FTGatePRO and FTGateOffice are high performance, feature rich mail servers for the Microsoft Windows operating system.
If a large number of Rcpt to: strings are sent to the FTGate server within a single SMTP conversation, the process will consume 100% CPU. A restart may be required in order to regain normal functionality.
References
Floosietek FTGate Rcpt to: Flood Denial of Service Vulnerability
References:
References:
- Floosietek Hotfix Page (Floosietek)
- FTGate Homepage (Floosietek)