Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.10948
Kategorie:Buffer overflow
Titel:qpopper options buffer overflow
Zusammenfassung:The remote qpopper server, according to its banner, is; running version 4.0.3 or version 4.0.4. These versions; are vulnerable to a buffer overflow if they are configured; to allow the processing of a user's ~/.qpopper-options file.
Beschreibung:Summary:
The remote qpopper server, according to its banner, is
running version 4.0.3 or version 4.0.4. These versions
are vulnerable to a buffer overflow if they are configured
to allow the processing of a user's ~
/.qpopper-options file.

Vulnerability Impact:
A local user can cause a buffer overflow by setting the
bulldir variable to something longer than 256 characters.

Solution:
Upgrade to the latest version, or disable
processing of user option files.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2001-1046
BugTraq ID: 2811
http://www.securityfocus.com/bid/2811
Bugtraq: 20010602 Qpopper 4.0.3 **** Fixes Buffer Overflow **** (fwd) (Google Search)
http://www.securityfocus.com/archive/1/188267
Caldera Security Advisory: CSSA-2001-SCO.8
http://archives.neohapsis.com/archives/linux/caldera/2001-q3/0006.html
http://marc.info/?l=vuln-dev&m=98777649031406&w=2
XForce ISS Database: qpopper-username-bo(6647)
https://exchange.xforce.ibmcloud.com/vulnerabilities/6647
CopyrightCopyright (C) 2002 Thomas Reinke

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.