CVE-2003-0487: Buffer Overflow
Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a long showuser parameter in the dosubscribe module, (2) a long folder parameter in the addacl module, (3) a long folder parameter in the list module, and (4) a long user parameter in the domap module.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0487?
CVE-2003-0487 has a high severity rating due to its potential for remote exploitation and denial of service.
How do I fix CVE-2003-0487?
To fix CVE-2003-0487, upgrade Kerio MailServer to the latest version or apply patches provided by the vendor.
Who is affected by CVE-2003-0487?
CVE-2003-0487 affects users of Kerio MailServer version 5.6.3, specifically remote authenticated users.
What type of vulnerability is CVE-2003-0487?
CVE-2003-0487 is classified as a buffer overflow vulnerability.
What are the potential impacts of CVE-2003-0487?
The potential impacts of CVE-2003-0487 include denial of service and possible remote code execution.