gnubiff POP3 Buffer Overflow - DoS Vulnerabilities
- 0
- Add a Comment
“CRITICAL: Highly critical IMPACT: DoS, System access WHERE: From remote…
Two vulnerabilities have been reported in gnubiff, which potentially
can be exploited to cause a DoS (Denial of Service) or compromise a
vulnerable system. 1) An unspecified boundary error exists within the POP3
functionality. This can be exploited to cause a buffer overflow and
may potentially allow execution of arbitrary code.
2) An error within the POP3 functionality when processing UIDL lists
can be exploited to disrupt the functionality and eventually crash
the process via an infinite UIDL list. SOLUTION: Update to version 2.0.0 or later.”
