CVE-2004-1211

Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via long arguments to the (1) EXAMINE, (2) SUBSCRIBE, (3) STATUS, (4) APPEND, (5) CHECK, (6) CLOSE, (7) EXPUNGE, (8) FETCH, (9) RENAME, (10) DELETE, (11) LIST, (12) SEARCH, (13) CREATE, or (14) UNSUBSCRIBE commands.
Configurations

Configuration 1 (hide)

cpe:2.3:a:david_harris:mercury:4.0.1a:*:win32:*:*:*:*:*

History

20 Nov 2024, 23:50

Type Values Removed Values Added
References () http://home.kabelfoon.nl/~jaabogae/han/m_401b.html - () http://home.kabelfoon.nl/~jaabogae/han/m_401b.html -
References () http://lists.grok.org.uk/pipermail/full-disclosure/2004-December/029701.html - () http://lists.grok.org.uk/pipermail/full-disclosure/2004-December/029701.html -
References () http://marc.info/?l=bugtraq&m=110193702909991&w=2 - () http://marc.info/?l=bugtraq&m=110193702909991&w=2 -
References () http://secunia.com/advisories/13348 - Vendor Advisory () http://secunia.com/advisories/13348 - Vendor Advisory
References () http://www.osvdb.org/12508 - () http://www.osvdb.org/12508 -
References () http://www.securityfocus.com/bid/11775 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/11775 - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/18318 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/18318 -

Information

Published : 2005-01-10 05:00

Updated : 2024-11-20 23:50


NVD link : CVE-2004-1211

Mitre link : CVE-2004-1211

CVE.ORG link : CVE-2004-1211


JSON object : View

Products Affected

david_harris

  • mercury
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer