74 Courier SMTP up to 0.45 buffer overflow SMTP 2004/03/22 Marc Ruef marc dot ruef at computec dot ch http://www.computec.ch computec.ch Marc Ruef marc dot ruef at computec dot ch http://www.computec.ch computec.ch 2004/11/13 1.3 Changed a pattern-matching error in ATK plugin version 2.1 - It should be working now. Corrected the plugin structure and added the accuracy values in 1.3 tcp 25 open|sleep|close|pattern_exists 220 *Courier 0.1* OR 220 *Courier 0.2* OR 220 *Courier 0.3* OR 220 *Courier 0.4[1-5]* 90 Check is copied from the Nessus plugin. Courier SMTP MTA up to 0.45 Courier SMTP MTA 0.45 or newer Buffer Overflow The remote mail server is the Courier MTA. There is a buffer overflow in the conversions functions of this software which may allow an attacker to execute arbitrary code on this host. Upgrade to version 0.45 or newer. Limit unwanted connections and communications with firewalling. 1 hour Maybe http://www.securityfocus.com/bid/9845/exploit/ Yes Yes High 7 6 9 7 High Nessus is able to do the same check. 9845 12102 Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427 http://www.computec.ch