NT IMail Whois32 Daemon Buffer Overflow DoS Vulnerability
BID:506
Info
NT IMail Whois32 Daemon Buffer Overflow DoS Vulnerability
| Bugtraq ID: | 506 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Mar 01 1999 12:00AM |
| Updated: | Mar 01 1999 12:00AM |
| Credit: | eEye Advisory AD03011999 posted to bugtraq by Marc of eEye <[email protected]>. |
| Vulnerable: |
Ipswitch IMail 5.0 |
| Not Vulnerable: | |
Discussion
NT IMail Whois32 Daemon Buffer Overflow DoS Vulnerability
IMail's whois server can be crashed due to an unchecked buffer.
IMail's whois server can be crashed due to an unchecked buffer.
Exploit / POC
NT IMail Whois32 Daemon Buffer Overflow DoS Vulnerability
Telnet to target machine, port 43
Send glob1
Where glob1 is 1000 characters.
Telnet to target machine, port 43
Send glob1
Where glob1 is 1000 characters.
Solution / Fix
NT IMail Whois32 Daemon Buffer Overflow DoS Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
NT IMail Whois32 Daemon Buffer Overflow DoS Vulnerability
References:
References: