Sophos virus detection engine 2.75 on Linux and Unix, as used in Sophos Email Appliance, Pure Message for Unix, and Sophos Anti-Virus Interface (SAVI), allows remote attackers to cause a denial of service (engine crash) via zero-length MIME attachments.
Weaknesses in this category are typically introduced during the configuration of the software.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1020462 | vdb entry |
http://www.securityfocus.com/bid/30110 | vdb entry |
http://www.vupen.com/english/advisories/2008/2053/references | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/43703 | vdb entry |
http://www.sophos.com/support/knowledgebase/article/42245.html?_log_from=rss | |
http://secunia.com/advisories/31037 | third party advisory vendor advisory |