The pop3 Proxy in Astaro Security Gateway (ASG) 7 does not perform virus scanning of attachments that exceed the maximum attachment size, and passes these attachments, which allows remote attackers to bypass this scanning via a large attachment.
Link | Tags |
---|---|
http://securityreason.com/securityalert/2981 | third party advisory |
http://www.securityfocus.com/archive/1/477120/100/0/threaded | mailing list |
http://www.securityfocus.com/archive/1/475642/100/0/threaded | mailing list |
http://www.securitytracker.com/id?1018543 | vdb entry |
http://www.hescominsoon.com/archives/773 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/35827 | vdb entry |