Short Name |
SMTP:RCPT-CMD-INJ |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
SMTP |
Keywords |
RCPT Command Injection |
Release Date |
2007/10/19 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability against multiples SMTP solutions including Clam-AV and SpamAssassin. A successful attack can lead to arbitrary code execution.
ClamAV is prone to a remote code-execution vulnerability because the application fails to properly sanitize user-supplied data. An attacker can exploit this issue to execute arbitrary code with superuser privileges. Successfully exploiting this issue will result in the complete compromise of affected computers. Versions prior to ClamAV 0.91.2 are vulnerable.