CVE-2006-4014: Medium severity Symantec Brightmail AntiSpam vulnerability
Published Aug 7, 2006
·Updated
Symantec Brightmail AntiSpam (SBAS) before 6.0.4, when the Control Center is allowed to connect from any computer, allows remote attackers to cause a denial of service (application freeze) "by sending invalid posts".
Affected Software
4 affected components
Symantec Brightmail AntiSpam=4.0
Symantec Brightmail AntiSpam=5.5
Symantec Brightmail AntiSpam=6.0
Symantec Brightmail AntiSpam=6.0.1
Remediation
Patch Available
Patch Available
Event History
Aug 7, 2006
CVE Published
07:04 PM
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4014?
CVE-2006-4014 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2006-4014?
To resolve CVE-2006-4014, users should upgrade to Symantec Brightmail AntiSpam version 6.0.4 or later.
3
What versions of Symantec Brightmail AntiSpam are affected by CVE-2006-4014?
CVE-2006-4014 affects Symantec Brightmail AntiSpam versions 4.0, 5.5, 6.0, and 6.0.1.
4
What kind of attack is associated with CVE-2006-4014?
CVE-2006-4014 could allow remote attackers to exploit the application by sending invalid posts, potentially causing an application freeze.
5
Is there a workaround for CVE-2006-4014?
Currently, the recommended action to mitigate CVE-2006-4014 is to update to the patched version instead of relying on a workaround.