Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

MERCUR Mailserver Control-Service Buffer Overflow Vulnerability

MERCUR Mailserver is prone to a remotely exploitable buffer overflow condition. The condition is due to insufficient bounds checking in the Control-Service component, which listens on TCP port 32000 by default. It is possible to corrupt process memory by supplying an overly long username/password. Attackers may exploit this condition to execute arbitrary instructions with the privileges of the mailserver.







 

Privacy Statement
Copyright 2008, SecurityFocus