CVE

Id
1501  
CVE No.
CVE-1999-1521  
Status
Candidate  
Description
Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vulnerable to a buffer overflow attack in the MAIL FROM command that may allow a remote attacker to execute arbitrary code on the server.  
Phase
Proposed (20010912)  
Votes
ACCEPT(1) Frech | NOOP(4) Christey, Cole, Foat, Wall  
Comments
Christey> Remove "attack" from description and slightly rewrite. | Christey> ADDREF BUGTRAQ:19991029 Vulnerability in CMail SMTP Server Version 2.4: Remotely exploitable buffer | URL:URL:http://www.securityfocus.com/archive/1/32573 | ADDREF BUGTRAQ:19990616 C-Mail SMTP Server Remote Buffer Overflow Exploit | URL:http://online.securityfocus.com/archive/1/15524 | | Note: this last post exploits an overflow through VRFY | instead of MAIL FROM. However, CD:SF-LOC suggests merging two | issues of the same type that are in the same versions. | | ADDREF BUGTRAQ:19990526 Multiple Web Interface Security Holes | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=92774425211457&w=2