First published: Wed Dec 31 2003(Updated: )
Multiple stack-based buffer overflows in Atrium MERCUR IMAPD in MERCUR Mailserver before 4.2.15.0 allow remote attackers to execute arbitrary code via a long (1) EXAMINE, (2) DELETE, (3) SUBSCRIBE, (4) RENAME, (5) UNSUBSCRIBE, (6) LIST, (7) LSUB, (8) STATUS, (9) LOGIN, (10) CREATE, or (11) SELECT command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mercury Mail Server | <=4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-1322 is considered a critical vulnerability due to its potential for remote code execution.
To fix CVE-2003-1322, upgrade the Atrium Mercur Mailserver to version 4.2.15.0 or later.
CVE-2003-1322 affects Atrium Mercur Mailserver versions prior to 4.2.15.0.
CVE-2003-1322 is a stack-based buffer overflow vulnerability.
Yes, CVE-2003-1322 can be exploited remotely by attackers through specially crafted commands.