74
Courier SMTP up to 0.45 buffer overflow
SMTP
2004/03/22
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
2004/11/13
1.3
Changed a pattern-matching error in ATK plugin version 2.1 - It should be working now. Corrected the plugin structure and added the accuracy values in 1.3
tcp
25
open|sleep|close|pattern_exists 220 *Courier 0.1* OR 220 *Courier 0.2* OR 220 *Courier 0.3* OR 220 *Courier 0.4[1-5]*
90
Check is copied from the Nessus plugin.
Courier SMTP MTA up to 0.45
Courier SMTP MTA 0.45 or newer
Buffer Overflow
The remote mail server is the Courier MTA. There is a buffer overflow in the conversions functions of this software which may allow an attacker to execute arbitrary code on this host.
Upgrade to version 0.45 or newer. Limit unwanted connections and communications with firewalling.
1 hour
Maybe
http://www.securityfocus.com/bid/9845/exploit/
Yes
Yes
High
7
6
9
7
High
Nessus is able to do the same check.
9845
12102
Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427
http://www.computec.ch