Buffer overflow in BL4 SMTP Server 0.1.4 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long argument to the (1) EHLO, (2) MAIL FROM, and (3) RCPT TO commands.
Link | Tags |
---|---|
http://securityreason.com/securityalert/809 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/26114 | vdb entry |
http://advisories.echo.or.id/adv/adv30-theday-2006.txt | vendor advisory exploit |
http://www.securityfocus.com/bid/17714 | vdb entry exploit |
http://www.securityfocus.com/archive/1/432329/100/0/threaded | mailing list |