First published: Tue Jul 24 2007(Updated: )
The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswitch Collaboration Suite (ICS) allows remote attackers to cause a denial of service (daemon crash) via certain data to TCP port 5179 that overwrites a destructor, as reachable by the (1) DoAttachVideoSender, (2) DoAttachVideoReceiver, (3) DoAttachAudioSender, and (4) DoAttachAudioReceiver functions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ipswitch Ipswitch Collaboration Suite | <=2.07 | |
Ipswitch Imserver | =2.0.5.30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3959 has a severity rating that indicates it can lead to a denial of service attack.
To fix CVE-2007-3959, you should upgrade to Ipswitch Collaboration Suite version 2.07 or later.
CVE-2007-3959 affects Ipswitch Instant Messaging IM Server version 2.0.5.30 and earlier, as well as earlier versions of Ipswitch Collaboration Suite.
Yes, CVE-2007-3959 can be exploited remotely by sending specific data to TCP port 5179.
CVE-2007-3959 is classified as a denial of service vulnerability.