Short Name |
POP3:OVERFLOW:EUDORA-URL-BOF |
---|---|
Severity |
High |
Recommended |
No |
Category |
POP3 |
Keywords |
Qualcomm Eudora URL Handling Buffer Overflow |
Release Date |
2012/11/21 |
Update Number |
2205 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in Qualcomm Eudora. A successful attack can lead to a stack overflow and arbitrary remote code execution within the context of the affected application.
The WebBrowser control is used in some email clients in order to launch Internet Explorer to render HTML content. A vulnerability exists that may allow an email message to automatically execute message attachments in email clients using the WebBrowser control. If a Windows Media Player file is referenced within a <t:video> tag, JavaScript commands included in the file may automatically execute when the email is viewed.