Preface: IMAP4 authentication overflowLogo -Internet Security Systems

IMAP4 authentication overflow

advICE :Intrusions : 2000803
 FAQ
Oh my gosh, I'm being HACKED!!!
How do I report the hacker to my ISP?
I'm seeing lots of attacks, is this normal?
Summary

An attempt to break in using buffer overflow on IMAP authentication.

Details

A very long user name, password, or file name often signals an intentional effort to overflow a buffer on a server. By constructing the data in a particular way, the intruder may be able to execute his own code on the attacked system.

 more information
BugtraqID: 130   imapd Buffer Overflow Vulnerability
 
CERT: CA-98.09.imapd  
 
CVE-1999-0005   IMAP auth overflow
 
advICE: Buffer overflows  
More about this general class of attacks, which is the root cause of many attacks on the Internet.  

 parametric information
lengthThe length of the authority name.
authorityThe beginning portion of the authority name.

 
Version appeared: 2.5 

Privacy Policy |  Copyright Info