NetCPlus SmartServer3 POP Buffer Overflow Vulnerability
BID:790
Info
NetCPlus SmartServer3 POP Buffer Overflow Vulnerability
| Bugtraq ID: | 790 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Nov 11 1999 12:00AM |
| Updated: | Nov 11 1999 12:00AM |
| Credit: | Released November 11, 1999 in a Bindview security advisory. |
| Vulnerable: |
NetcPlus SmartServer3 3.5.1 |
| Not Vulnerable: |
NetcPlus SmartServer3 3.7 x NetcPlus SmartServer3 3.6 x |
Discussion
NetCPlus SmartServer3 POP Buffer Overflow Vulnerability
The POP server that is part of the NetcPlus SmartServer3 email server has an unchecked buffer that could allow an attacker to execute code on the server. If the USER command is followed by an argument of over 800 characters, the input buffer will be overflowed, and data from the argument will be passed to the system to be executed at the privelege level of the SmartServer program.
The POP server that is part of the NetcPlus SmartServer3 email server has an unchecked buffer that could allow an attacker to execute code on the server. If the USER command is followed by an argument of over 800 characters, the input buffer will be overflowed, and data from the argument will be passed to the system to be executed at the privelege level of the SmartServer program.
Exploit / POC
NetCPlus SmartServer3 POP Buffer Overflow Vulnerability
Exploit written and submitted to bugtraq by Ussr Labs <[email protected]>. This exploit will open a command shell bound to port 666 and restart the POP server.
Exploit written and submitted to bugtraq by Ussr Labs <[email protected]>. This exploit will open a command shell bound to port 666 and restart the POP server.
Solution / Fix
NetCPlus SmartServer3 POP Buffer Overflow Vulnerability
Solution:
SmartServer 3.6 and later is not vulnerable to this issue. The latest version of SmartServer is available from:
http://www.netcplus.com/smartserver.htm
Solution:
SmartServer 3.6 and later is not vulnerable to this issue. The latest version of SmartServer is available from:
http://www.netcplus.com/smartserver.htm
References
NetCPlus SmartServer3 POP Buffer Overflow Vulnerability
References:
References:
- SmartServer3 Homepage (NetcPlus)