MailEnable IMAP身份验证请求缓冲区溢出漏洞

漏洞信息详情

MailEnable IMAP身份验证请求缓冲区溢出漏洞

漏洞简介

MailEnable Enterprise 1.04和较早的版本以及Professional 1.54,其IMAP服务中的缓冲区溢出漏洞,允许远程攻击者通过较长的AUTHENTICATE命令来执行任意代码。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

MailEnable MailEnable Enterprise Edition 1.0 2

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Enterprise Edition 1.0

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Enterprise Edition 1.0 1

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Enterprise Edition 1.0 3

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Enterprise Edition 1.0 4

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Professional 1.5

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Professional 1.51

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Professional 1.52

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Professional 1.53

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

MailEnable MailEnable Professional 1.54

MailEnable MEIMSM-HF050404.zip

http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip

参考网址

来源: XF

名称: mailenable-imap-dos(19947)

链接:http://xforce.iss.net/xforce/xfdb/19947

来源: BID

名称: 12995

链接:http://www.securityfocus.com/bid/12995

来源: www.mailenable.com

链接:http://www.mailenable.com/hotfix/

来源: SECTRACK

名称: 1013637

链接:http://securitytracker.com/id?1013637

来源: SECUNIA

名称: 14812

链接:http://secunia.com/advisories/14812

来源: FULLDISC

名称: 20050405 MailEnable Imapd remote BoF + Exploit [x0n3-h4ck]

链接:http://lists.grok.org.uk/pipermail/full-disclosure/2005-April/033123.html

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享