First published: Tue Dec 19 2000(Updated: )
MAILsweeper for SMTP 3.x does not properly handle corrupt CDA documents in a ZIP file and hangs, which allows remote attackers to cause a denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Clearswift MAILsweeper | =3.x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0932 has been classified as a denial of service vulnerability.
To resolve CVE-2000-0932, upgrade to a version of MAILsweeper for SMTP that does not have this vulnerability.
The issue in CVE-2000-0932 is caused by MAILsweeper for SMTP not properly handling corrupt CDA documents within ZIP files.
Users running MAILsweeper for SMTP version 3.x are affected by CVE-2000-0932.
Yes, CVE-2000-0932 can be exploited remotely, allowing attackers to induce a denial of service.