Short Name |
IMAP:OVERFLOW:MAILENABLE-ARG-OF
|
Severity |
High
|
Recommended |
No
|
Recommended Action |
Drop
|
Category |
IMAP
|
Keywords |
MailEnable Argument Overflow
|
Release Date |
2006/11/30
|
Update Number |
1213
|
Supported Platforms |
di-5.3+, idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+
|
IMAP: MailEnable Argument Overflow
This signature detects attempts to exploit a known vulnerability in the Imap MailEnable service. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the service.
Extended Description
MailEnable is prone to a buffer-overflow vulnerability in the IMAP service because the application fails to properly bounds-check user-supplied data.
This issue is reported to affect the following MailEnable versions, but other versions may also be vulnerable:
1.6-1.82 Professional Edition
1.1-1.30 Enterprise Edition
2.0-2.32 Professional Edition
2.0-2.32 Enterprise Edition
Affected Products
- MailEnable MailEnable Enterprise Edition 1.1
- MailEnable MailEnable Enterprise Edition 1.1.0
- MailEnable MailEnable Enterprise Edition 1.2
- MailEnable MailEnable Enterprise Edition 1.21
- MailEnable MailEnable Enterprise Edition 2.0
- MailEnable MailEnable Enterprise Edition 2.1
- MailEnable MailEnable Enterprise Edition 2.2
- MailEnable MailEnable Enterprise Edition 2.32
- MailEnable MailEnable Enterprise Edition 2.33
- MailEnable MailEnable Enterprise Edition 2.34
- MailEnable MailEnable Enterprise Edition
- MailEnable MailEnable Professional 1.6.0
- MailEnable MailEnable Professional 1.7.0
- MailEnable MailEnable Professional 1.72
- MailEnable MailEnable Professional 1.73
- MailEnable MailEnable Professional 1.82
- MailEnable MailEnable Professional 2.0
- MailEnable MailEnable Professional 2.1
- MailEnable MailEnable Professional 2.2
- MailEnable MailEnable Professional 2.32
- MailEnable MailEnable Professional 2.33
- MailEnable MailEnable Professional 2.34
References