Artisoft XtraMail Multiple DoS Vulnerabilities
BID:791
Info
Artisoft XtraMail Multiple DoS Vulnerabilities
| Bugtraq ID: | 791 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-1999-1511 |
| Remote: | Yes |
| Local: | Yes |
| Published: | Nov 09 1999 12:00AM |
| Updated: | Jul 11 2009 12:56AM |
| Credit: | Posted to Bugtraq by Ussr Labs <[email protected]> on November 9, 1999. |
| Vulnerable: |
Artisoft XtraMail 1.11 |
| Not Vulnerable: | |
Discussion
Artisoft XtraMail Multiple DoS Vulnerabilities
There are several unchecked buffers in XtraMail 1.11, which when overflowed will crash the server and cause a denial of service.
1: POP3 server PASS argument
Will be overflowed with a password of over 1500 characters.
2: SMTP server HELO argument
Will be overflowed with a 10,000 character argument to the HELO command.
3: Control service Username
XtraMail includes a remote administration utility which listens on port 32000 for logins. The username buffer will be overflowed with a string of 10,000 characters or more.
There are several unchecked buffers in XtraMail 1.11, which when overflowed will crash the server and cause a denial of service.
1: POP3 server PASS argument
Will be overflowed with a password of over 1500 characters.
2: SMTP server HELO argument
Will be overflowed with a 10,000 character argument to the HELO command.
3: Control service Username
XtraMail includes a remote administration utility which listens on port 32000 for logins. The username buffer will be overflowed with a string of 10,000 characters or more.
Exploit / POC
Artisoft XtraMail Multiple DoS Vulnerabilities
see discussion
see discussion