You probably enabled "Safe Checks" which does not actually perform the DoS but just reports the vulnerability based on the Domino version number it found. Try disabling "Safe Checks" and see if it freezes your machine
-- Marc ----- Original Message ----- From: "Always Bishan" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Friday, July 04, 2003 8:00 AM Subject: lotus_esmtp_overflow.nasl - false positive : Hi all : : while scanning a remote client machine. I got a : security hole as : "There seem to be a buffer overflow in the remote SMTP : server : when the server is issued a too long argument to the : 'MAIL FROM' : command, such as : : : MAIL FROM: [EMAIL PROTECTED] : : This problem may allow an attacker to prevent this : host : to act as a mail host and may even allow him to : execute : arbitrary code on this system." : : I verified this by running "lotus_esmtp_overflow.nasl" : standalone and this too showed the attack to be : successfull. : : But the remote ftp server is still on and the port is : open even after continuous multiple attacks. : : Any clues? : : Regards, : Bishan
