Skyfull Mail Server MAIL FROM Buffer Overflow Vulnerability
BID:759
Info
Skyfull Mail Server MAIL FROM Buffer Overflow Vulnerability
| Bugtraq ID: | 759 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-1999-0873 CVE-1999-0872 CVE-2001-0573 |
| Remote: | Yes |
| Local: | Yes |
| Published: | Oct 30 1999 12:00AM |
| Updated: | Jul 11 2009 12:56AM |
| Credit: | Posted to bugtraq-jp by UNYUN <[email protected]>. |
| Vulnerable: |
Sky Communications Skyfull 1.1.4 |
| Not Vulnerable: | |
Discussion
Skyfull Mail Server MAIL FROM Buffer Overflow Vulnerability
The Skyfull mail server version 1.1.4 has an unchecked buffer into which the argument from the MAIL FROM command is placed. This buffer can be overwritten and arbitrary code can be executed.
The Skyfull mail server version 1.1.4 has an unchecked buffer into which the argument from the MAIL FROM command is placed. This buffer can be overwritten and arbitrary code can be executed.
Exploit / POC
Skyfull Mail Server MAIL FROM Buffer Overflow Vulnerability
telnet target.mailserver:25
HELO xxxx
MAIL FROM: <long string>
crash
telnet target.mailserver:25
HELO xxxx
MAIL FROM: <long string>
crash
Solution / Fix
Skyfull Mail Server MAIL FROM Buffer Overflow Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Skyfull Mail Server MAIL FROM Buffer Overflow Vulnerability
References:
References: