Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v7.5 - Exploits Update (Thu Dec 20 2007)

Perdition IMAP proxy str_vwrite format string exploit

Exploits/Remote  [FreeBSD 6.2 (i386)]




• Thu Dec 20 2007
The format string protection mechanism in IMAPD for Perdition Mail Retrieval Proxy 1.17 and earlier allows remote attackers to execute arbitrary code via an IMAP tag with a null byte followed by a format string specifier, which is not counted by the mechanism.

Exploits Vulnerabiltiy: CVE-2007-5740



< Back to Product Updates