SMTP service in MailEnable Standard, Professional, and Enterprise before ME-10014 (20060904) allows remote attackers to cause a denial of service via an SPF lookup for a domain with a large number of records, which triggers a null pointer exception.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2006/3669 | vdb entry |
http://securitytracker.com/id?1016792 | patch vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/28910 | vdb entry |
http://www.mailenable.com/hotfix/ | patch |
http://www.securityfocus.com/bid/20091 | vdb entry |
http://www.mailenable.com/hotfix/MESMTPC.ZIP | patch |
http://secunia.com/advisories/21998 | third party advisory |