CVE-2003-1322: Buffer Overflow
Published Dec 31, 2003
·Updated
Multiple stack-based buffer overflows in Atrium MERCUR IMAPD in MERCUR Mailserver before 4.2.15.0 allow remote attackers to execute arbitrary code via a long (1) EXAMINE, (2) DELETE, (3) SUBSCRIBE, (4) RENAME, (5) UNSUBSCRIBE, (6) LIST, (7) LSUB, (8) STATUS, (9) LOGIN, (10) CREATE, or (11) SELECT command.
Affected Software
1 affected component
Atrium Software Mercur Mailserver<=4.2
Remediation
Patch Available
Event History
Dec 31, 2003
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Mar 22, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-1322?
CVE-2003-1322 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2003-1322?
To fix CVE-2003-1322, upgrade the Atrium Mercur Mailserver to version 4.2.15.0 or later.
3
What software does CVE-2003-1322 affect?
CVE-2003-1322 affects Atrium Mercur Mailserver versions prior to 4.2.15.0.
4
What type of vulnerability is CVE-2003-1322?
CVE-2003-1322 is a stack-based buffer overflow vulnerability.
5
Can CVE-2003-1322 be exploited remotely?
Yes, CVE-2003-1322 can be exploited remotely by attackers through specially crafted commands.