IPSwitch IMail Web Messaging HTTP Get Buffer Overflow Vulnerability
BID:5323
Info
IPSwitch IMail Web Messaging HTTP Get Buffer Overflow Vulnerability
| Bugtraq ID: | 5323 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 26 2002 12:00AM |
| Updated: | Jul 26 2002 12:00AM |
| Credit: | Vulnerability discovery credited to 2c79cbe14ac7d0b8472d3f129fa1df <[email protected]>. |
| Vulnerable: |
Ipswitch IMail 7.1 Ipswitch IMail 7.0.7 Ipswitch IMail 7.0.6 Ipswitch IMail 7.0.5 Ipswitch IMail 7.0.4 Ipswitch IMail 7.0.3 Ipswitch IMail 7.0.2 Ipswitch IMail 7.0.1 Ipswitch IMail 6.4 Ipswitch IMail 6.3 Ipswitch IMail 6.2 Ipswitch IMail 6.1 |
| Not Vulnerable: |
Ipswitch IMail 7.12 |
Discussion
IPSwitch IMail Web Messaging HTTP Get Buffer Overflow Vulnerability
IMail is a commercial email server software package distributed and maintained by Ipswitch, Incorporated. IMail is available for Microsoft Operating Systems.
The web messaging server is vulnerable to a buffer overflow. When the server receives a request for HTTP version 1.0, and the total request is 96 bytes or greater, a buffer overflow occurs. This could result in the execution of attacker-supplied instructions, and potentially allow an attacker to gain local access.
** Ipswitch has reported they are unable to reproduce this issue. In addition, Ipswitch has stated that the supplied, third party patch may in fact open additional vulnerabilities in the product. Ipswitch suggests that users do not apply the supplied patch.
IMail is a commercial email server software package distributed and maintained by Ipswitch, Incorporated. IMail is available for Microsoft Operating Systems.
The web messaging server is vulnerable to a buffer overflow. When the server receives a request for HTTP version 1.0, and the total request is 96 bytes or greater, a buffer overflow occurs. This could result in the execution of attacker-supplied instructions, and potentially allow an attacker to gain local access.
** Ipswitch has reported they are unable to reproduce this issue. In addition, Ipswitch has stated that the supplied, third party patch may in fact open additional vulnerabilities in the product. Ipswitch suggests that users do not apply the supplied patch.
Exploit / POC
IPSwitch IMail Web Messaging HTTP Get Buffer Overflow Vulnerability
Exploit contributed by 2c79cbe14ac7d0b8472d3f129fa1df <[email protected]>.
Exploit contributed by 2c79cbe14ac7d0b8472d3f129fa1df <[email protected]>.
Solution / Fix
IPSwitch IMail Web Messaging HTTP Get Buffer Overflow Vulnerability
Solution:
The vendor has released a newer version of the software:
Ipswitch IMail 6.1
Ipswitch IMail 6.2
Ipswitch IMail 6.3
Ipswitch IMail 6.4
Ipswitch IMail 7.0.1
Ipswitch IMail 7.0.2
Ipswitch IMail 7.0.3
Ipswitch IMail 7.0.4
Ipswitch IMail 7.0.5
Ipswitch IMail 7.0.6
Ipswitch IMail 7.0.7
Ipswitch IMail 7.1
Solution:
The vendor has released a newer version of the software:
Ipswitch IMail 6.1
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 6.2
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 6.3
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 6.4
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.0.1
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.0.2
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.0.3
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.0.4
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.0.5
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.0.6
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.0.7
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
Ipswitch IMail 7.1
-
Ipswitch imail712.exe
ftp://ftp.ipswitch.com/Ipswitch/Product_Support/IMail/imail712.exe
References
IPSwitch IMail Web Messaging HTTP Get Buffer Overflow Vulnerability
References:
References: