CodeBlue SMTP Response Buffer Overflow Vulnerability
BID:5300
Info
CodeBlue SMTP Response Buffer Overflow Vulnerability
| Bugtraq ID: | 5300 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 24 2002 12:00AM |
| Updated: | Jul 24 2002 12:00AM |
| Credit: | Credited to doe <[email protected]>. |
| Vulnerable: |
Michael Behan CodeBlue 5.1 |
| Not Vulnerable: | |
Discussion
CodeBlue SMTP Response Buffer Overflow Vulnerability
CodeBlue is an Apache httpd log scanning utility that attempts to contact the administrators of hosts infected with worms.
A buffer overflow vulnerability has been reported in CodeBlue. The condition occurs when processing responses from SMTP servers. It may be possible for malicious SMTP servers to execute shellcode on hosts running CodeBlue.
CodeBlue is an Apache httpd log scanning utility that attempts to contact the administrators of hosts infected with worms.
A buffer overflow vulnerability has been reported in CodeBlue. The condition occurs when processing responses from SMTP servers. It may be possible for malicious SMTP servers to execute shellcode on hosts running CodeBlue.
Exploit / POC
CodeBlue SMTP Response Buffer Overflow Vulnerability
A proof-of-concept exploit has been published:
A proof-of-concept exploit has been published:
Solution / Fix
CodeBlue SMTP Response Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
CodeBlue SMTP Response Buffer Overflow Vulnerability
References:
References: