Symantec Brightmail AntiSpam Lets Remote Users Deny Service With Malformed MIME Content
|
|
SecurityTracker Alert ID: 1015051
|
|
SecurityTracker URL: http://securitytracker.com/id?1015051
|
|
CVE Reference: CVE-2005-4695
(Links to External Site)
|
Updated: Jun 14 2008
|
Original Entry Date: Oct 13 2005
|
Impact: Denial of service via network
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Advisory: Symantec Advisory
|
Version(s): 6.0.1, 6.0.2
|
Description: A vulnerability was reported in Symantec Brightmail AntiSpam. A remote user can cause denial of service conditions.
A remote user can send e-mail containing specially crafted MIME content to cause the target bmserver component to terminate.
|
Impact: A remote user can cause denial of service conditions.
|
Solution: The vendor has issued patches.
For 6.0.1, use Update patch 162:
ftp://ftp.symantec.com/public/english_us_canada/products/sba/sba_60x/updates/patch162.zip
For
6.0.2, use Update patch 161:
ftp://ftp.symantec.com/public/english_us_canada/products/sba/sba_60x/updates/patch161.zip
The
vendor's advisory is available at:
http://securityresponse.symantec.com/avcenter/security/Content/2005.10.12d.html
|
Vendor URL: securityresponse.symantec.com/avcenter/security/Content/2005.10.12d.html (Links to External Site)
|
Cause: State error
|
Underlying OS: Linux (Red Hat Enterprise), UNIX (Solaris - SunOS), Windows (2000), Windows (2003)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Thu, 13 Oct 2005 02:46:58 -0400
Subject: Symantec Brightmail AntiSpam: Malformed MIME, Denial of Service
|
http://securityresponse.symantec.com/avcenter/security/Content/2005.10.12d.html
|
|