SerialPOP DoS

From: Philip Stoev (philipat_private)
Date: Sun Nov 15 1998 - 09:40:55 PST

  • Next message: Noam Rathaus: "Re: crashing wingates"

    Hello,
    
    maybe this is nothing new, but anyway:
    
    Certain versions of SerialPOP produce a nice Segmentation Fault if the user
    specifies a POP/SMTP host name that is longer than 128 characters. This is
    caused by a buffer overflow in a function which generates log output. I
    know some variants have this fixed but others seem to be vulnerable.
    
     - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    | | If you will be taking the TOEFL or the SAT, check | |
    | |        out http://studywiz.hypermart.net/         | |
     - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    
     This message was sent by Philip Stoev (philipat_private)
     tel: (359 2) 715949, 9549488 fax: (359 2) 544669
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:23:30 PDT