A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial of service via certain strings, as reported in GFI MailEssentials for Exchange 9 and 10, and GFI MailSecurity for Exchange 8, which causes emails to remain in IIS or Exchange mail queues.
References
Link | Resource |
---|---|
http://kbase.gfi.com/showarticle.asp?id=KBID002249 | Patch Vendor Advisory |
http://secunia.com/advisories/13708 | |
http://www.csis.dk/default.asp?m=1&a=194 | Vendor Advisory |
http://www.securityfocus.com/bid/12148 | |
http://kbase.gfi.com/showarticle.asp?id=KBID002249 | Patch Vendor Advisory |
http://secunia.com/advisories/13708 | |
http://www.csis.dk/default.asp?m=1&a=194 | Vendor Advisory |
http://www.securityfocus.com/bid/12148 |
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:50
Type | Values Removed | Values Added |
---|---|---|
References | () http://kbase.gfi.com/showarticle.asp?id=KBID002249 - Patch, Vendor Advisory | |
References | () http://secunia.com/advisories/13708 - | |
References | () http://www.csis.dk/default.asp?m=1&a=194 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/12148 - |
Information
Published : 2005-01-03 05:00
Updated : 2024-11-20 23:50
NVD link : CVE-2004-1312
Mitre link : CVE-2004-1312
CVE.ORG link : CVE-2004-1312
JSON object : View
Products Affected
gfi
- mailsecurity
- mailessentials
CWE