Release DateJan 05, 2012 |
Severityhigh |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt against a Buffer Overflow vulnerability in YahooPOPs.The vulnerability is caused by an error when the vulnerable software handles a malicious SMTP request. It allows a remote attacker to execute arbitrary code via sending a crafted request. |
Affected ProductsYahooPOPS 0.4 through 0.6 |
Recommended ActionsDisable the SMTP service and enable the POP3 service to the loopback interface only. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2004-1558 |