IMAP.APPEND.Command.Buffer.Overflow

description-logoDescription

This indicates an attack attempt against a buffer-overflow vulnerability in the IMAP service in NetWin Surgemail.
The vulnerability is caused by an error when the vulnerable software handles a specially crafted overly long argument to the APPEND command. It allows a remote attacker to cause a denial of service (crash) and possibly execute arbitrary code.

affected-products-logoAffected Products

NetWin SurgeMail 3.9e

Impact logoImpact

Denial of service

recomended-action-logoRecommended Actions

Apply the patch from the vendor:
http://www.netwinsite.com/surgemail/help/updates.htm

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)