Atrium Software Mercur Mailserver POP3 AUTH Remote Buffer Overflow Vulnerability
BID:8889
Info
Atrium Software Mercur Mailserver POP3 AUTH Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 8889 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 25 2003 12:00AM |
| Updated: | Oct 25 2003 12:00AM |
| Credit: | Discovery credited to Kostya KORTCHINSKY. |
| Vulnerable: |
Atrium Software MERCUR Mailserver 4.2 SP2 Atrium Software MERCUR Mailserver 4.2 SP1 Atrium Software MERCUR Mailserver 4.2 Atrium Software MERCUR Mailserver 4.0 1 SP1 Atrium Software MERCUR Mailserver 4.0 1 Atrium Software MERCUR Mailserver 3.3 SP2 Atrium Software MERCUR Mailserver 3.3 SP1 Atrium Software MERCUR Mailserver 3.3 |
| Not Vulnerable: |
Atrium Software MERCUR Mailserver 4.2 SP3a |
Discussion
Atrium Software Mercur Mailserver POP3 AUTH Remote Buffer Overflow Vulnerability
A problem has been reported in MERCUR Mailserver when handling the POP3 AUTH command. This problem may make it possible for an attacker crash the service on a vulnerable system, or gain unauthorized access.
A problem has been reported in MERCUR Mailserver when handling the POP3 AUTH command. This problem may make it possible for an attacker crash the service on a vulnerable system, or gain unauthorized access.
Exploit / POC
Atrium Software Mercur Mailserver POP3 AUTH Remote Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Atrium Software Mercur Mailserver POP3 AUTH Remote Buffer Overflow Vulnerability
References:
References:
- Atrium Software Mercur Mail Server Homepage (Atrium Software)
- MERCUR Mailserver Version 4.2 - Service Pack 3a (Atrium Software)