CVE-2004-2292: Buffer Overflow
Published Dec 31, 2004
·Updated
Buffer overflow in Alt-N MDaemon 7.0.1 allows remote attackers to cause a denial of service (application crash) via a long STATUS command to the IMAP server.
Affected Software
27 affected components
Alt-N MDaemon=6.8.3
Alt-N MDaemon=3.5.4
Alt-N MDaemon=6.7.9
Alt-N MDaemon=6.8.1
Alt-N MDaemon=3.5.0
Alt-N MDaemon=3.1_beta
Alt-N MDaemon=3.5.1
Alt-N MDaemon=6.0.6
Alt-N MDaemon=3.1.2
Alt-N MDaemon=2.8
Alt-N MDaemon=6.8.4
Alt-N MDaemon=6.0
Alt-N MDaemon=2.71_sp1
Alt-N MDaemon=6.5.0
Alt-N MDaemon=6.8.0
Alt-N MDaemon=6.5.2
Alt-N MDaemon=3.1.1
Alt-N MDaemon=2.8.5.0
Alt-N MDaemon=3.5.6
Alt-N MDaemon=3.0.4
Alt-N MDaemon=6.8.5
Alt-N MDaemon=6.8.2
Alt-N MDaemon=5.0.7
Alt-N MDaemon=6.0.7
Alt-N MDaemon=6.7.5
Alt-N MDaemon=3.0.3
Alt-N MDaemon=6.0.5
Event History
Dec 31, 2004
CVE Published
05:00 AM
Aug 4, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2292?
CVE-2004-2292 is considered a high severity vulnerability due to potential remote denial of service.
2
How do I fix CVE-2004-2292?
To fix CVE-2004-2292, upgrade to a patched version of Alt-N MDaemon that addresses this vulnerability.
3
What versions are affected by CVE-2004-2292?
CVE-2004-2292 affects multiple versions of Alt-N MDaemon including versions 2.8 through 6.8.5.
4
What damage can CVE-2004-2292 cause?
CVE-2004-2292 can cause a denial of service, resulting in the Alt-N MDaemon application crashing.
5
Is CVE-2004-2292 exploitable remotely?
Yes, CVE-2004-2292 can be exploited remotely via a specially crafted long STATUS command to the IMAP server.