QMail RCPT服务拒绝漏洞

漏洞信息详情

QMail RCPT服务拒绝漏洞

漏洞简介

Qmail存在漏洞。通过指定大量带有RCPT命令的接受者导致服务拒绝。

漏洞公告

Setting user resource limits on the server process will prevent Qmail from allocating enough memory to cause a denial of service.
The following command will set the maximum amount of memory processes can allocate in the heap to 1 MB.
‘ulimit -d 1024’.
If placed in the init scripts, the limit will be put in place whenever the system intializes.
This information was supplied by Dan Bernstein .
@cr.yp.to>

参考网址

来源: XF
名称: qmail-rcpt
链接:http://xforce.iss.net/static/208.php

来源: BID
名称: 2237
链接:http://www.securityfocus.com/bid/2237

来源: www.ornl.gov
链接:http://www.ornl.gov/its/archives/mailing-lists/qmail/1997/06/threads.html

来源: cr.yp.to
链接:http://cr.yp.to/qmail/venema.html

来源: BUGTRAQ
名称: 19970612 Re: Denial of service (qmail-smtpd)
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=87602558319029&w=2

来源: BUGTRAQ
名称: 19970612 qmail-dos-2.c, another denial of service attack
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=87602558319024&w=2

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享