UoW IMAP/POP server_login() Function Remote Overflow

critical Nessus Plugin ID 10125

Synopsis

The remote mail server is vulnerable to a buffer overflow.

Description

A remote buffer overflow in this IMAP server may allow a remote user to gain root privileges.

University of Washington IMAP server is known to be affected.

Solution

Upgrade your IMAP server to the newest version available from your vendor.

See Also

http://www.nessus.org/u?0d90bc64

Plugin Details

Severity: Critical

ID: 10125

File Name: imap_overflow.nasl

Version: 1.32

Type: remote

Published: 6/22/1999

Updated: 8/10/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.4

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

Vulnerability Publication Date: 3/2/1997

Reference Information

CVE: CVE-1999-0042