CVE-2004-1312

A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial of service via certain strings, as reported in GFI MailEssentials for Exchange 9 and 10, and GFI MailSecurity for Exchange 8, which causes emails to remain in IIS or Exchange mail queues.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gfi:mailessentials:9.0:*:exchange_smtp:*:*:*:*:*
cpe:2.3:a:gfi:mailessentials:10.0:*:exchange_smtp:*:*:*:*:*
cpe:2.3:a:gfi:mailessentials:10.1:*:exchange_smtp:*:*:*:*:*
cpe:2.3:a:gfi:mailsecurity:8.0:*:exchange_smtp:*:*:*:*:*

History

20 Nov 2024, 23:50

Type Values Removed Values Added
References () http://kbase.gfi.com/showarticle.asp?id=KBID002249 - Patch, Vendor Advisory () http://kbase.gfi.com/showarticle.asp?id=KBID002249 - Patch, Vendor Advisory
References () http://secunia.com/advisories/13708 - () http://secunia.com/advisories/13708 -
References () http://www.csis.dk/default.asp?m=1&a=194 - Vendor Advisory () http://www.csis.dk/default.asp?m=1&a=194 - Vendor Advisory
References () http://www.securityfocus.com/bid/12148 - () http://www.securityfocus.com/bid/12148 -

Information

Published : 2005-01-03 05:00

Updated : 2024-11-20 23:50


NVD link : CVE-2004-1312

Mitre link : CVE-2004-1312

CVE.ORG link : CVE-2004-1312


JSON object : View

Products Affected

gfi

  • mailsecurity
  • mailessentials