UssrLabs found a Remote DoS (Denial-of-Service) Attack in MsgCore 's ZetaMail Mail POP3/SMTP Server; the buffer overflow is caused by passing a long user name/password (3500 characters).
Credit:
The mentioned vulnerability has been discovered by: Ussr Labs .
For more information about denial-of-service attacks, take a look at: Why a Denial-of-Service attack can be dangerous .
Vulnerable systems:
ZetaMail 2.1 (95) and below
ZetaMail 2.0 (NT) and below
Immune systems:
ZetaMail 2.11 (95)
ZetaMail 2.10 (NT)
Example:
[gimmemore@itsme]$ telnet example.com 110
Trying example.com...
Connected to example.com.
Escape character is '^]'.
+OK ZetaMail for 95 BD0211 <4294764405.063903189415041@itsme>
USER {buffer)
+OK Send password
PASS {buffer)
Overflow Crash (when {buffer} is 3500 characters).
Binary DoS exploit code can be downloaded from:
http://www.ussrback.com/zmail/zmaildos.exe
Source of the Binary DoS exploit code can be downloaded from (ASM):
http://www.ussrback.com/zmail/zmaildos.zip
Source of the Binary DoS exploit code can be downloaded from (Linux):
http://www.ussrback.com/zmail/zmaildos.tgz
Solution:
Upgrade to the latest version:
http://www.web-net.com/supermail/MsgCoreNT_210.zip (NT)
http://www.web-net.com/supermail/MsgCore95_211.zip (95)
Please enable JavaScript to view the comments powered by Disqus.
blog comments powered by