漏洞信息详情
MailEnable IMAP身份验证请求缓冲区溢出漏洞
- CNNVD编号:CNNVD-200505-444
- 危害等级: 高危
- CVE编号:
CVE-2005-1014
- 漏洞类型:
缓冲区溢出
- 发布时间:
2005-05-02
- 威胁类型:
远程
- 更新时间:
2007-07-24
- 厂 商:
mailenable - 漏洞来源:
MailEnable -
漏洞简介
MailEnable Enterprise 1.04和较早的版本以及Professional 1.54,其IMAP服务中的缓冲区溢出漏洞,允许远程攻击者通过较长的AUTHENTICATE命令来执行任意代码。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:
MailEnable MailEnable Enterprise Edition 1.0 2
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Enterprise Edition 1.0
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Enterprise Edition 1.0 1
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Enterprise Edition 1.0 3
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Enterprise Edition 1.0 4
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Professional 1.5
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Professional 1.51
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Professional 1.52
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Professional 1.53
MailEnable MEIMSM-HF050404.zip
http://www.mailenable.com/hotfix/MEIMSM-HF050404.zip
MailEnable MailEnable Professional 1.54
MailEnable MEIMSM-HF050404.zip
参考网址
来源: XF
名称: mailenable-imap-dos(19947)
链接:http://xforce.iss.net/xforce/xfdb/19947
来源: BID
名称: 12995
链接:http://www.securityfocus.com/bid/12995
来源: www.mailenable.com
链接:http://www.mailenable.com/hotfix/
来源: SECTRACK
名称: 1013637
链接:http://securitytracker.com/id?1013637
来源: SECUNIA
名称: 14812
链接:http://secunia.com/advisories/14812
来源: FULLDISC
名称: 20050405 MailEnable Imapd remote BoF + Exploit [x0n3-h4ck]
链接:http://lists.grok.org.uk/pipermail/full-disclosure/2005-April/033123.html