首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Denial of Service in McAfee Email Gateway (formerly IronMail)
来源:www.exploit-db.com 作者:Grisolia 发布时间:2010-04-08  

Advisory Name: Denial of Service in McAfee Email Gateway (formerly IronMail)
Vulnerability Class: Denial of Service
Release Date: Tue Apr 6, 2010
Affected Applications: Secure Mail (Ironmail) ver.6.7.1
Affected Platforms: FreeBSD 6.2 / Apache-Coyote 1.1
Local / Remote: Local
Severity: Medium – CVSS: 4.6 (AV:L/AC:L/Au:S/C:N/I:N/A:C)
Researcher: Nahuel Grisolía

Vendor Status: Official Patch Released. Install McAfee Email Gateway 6.7.2 Hotfix 2.
Reference to Vulnerability Disclosure Policy: http://www.cybsec.com/vulnerability_policy.pdf

Vulnerability Description:
Users inside the CLI can run some kind of “Fork Bomb” in order to saturate system resources because
of an insecure ulimit value.

Download:
http://www.exploit-db.com/sploits/cybsec_advisory_2010_0401.pdf


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Internal Information Disclosur
·Local Glibc shared library (.s
·Local Privilege Escalation in
·Anyzip (.zip) v1.1 0day Poc (S
·Internet Explorer Tabular Data
·Multiple Vendor librpc.dll Sig
·ilchClan <= 1.0.5 (cid) SQL In
·CompleteFTP v3.3.0 - Remote Me
·MyVideoConverter v2.15 Local D
·Miniature Java Web Server <= 1
·MP3 Wav Editor v3.80 .mp3 Loca
·WinSoftMagic Photo Editor .PNG
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved