CVE-2007-4242: Medium severity Astaro Security Gateway vulnerability
Published Aug 8, 2007
·Updated
The pop3 Proxy in Astaro Security Gateway (ASG) 7 does not perform virus scanning of attachments that exceed the maximum attachment size, and passes these attachments, which allows remote attackers to bypass this scanning via a large attachment.
Affected Software
1 affected component
Astaro Security Gateway=7.0
Event History
Aug 8, 2007
CVE Published
10:17 PM
Aug 9, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4242?
CVE-2007-4242 has a moderate severity rating due to its potential for remote exploitation.
2
How do I fix CVE-2007-4242?
To fix CVE-2007-4242, upgrade to a more recent version of Astaro Security Gateway that addresses this vulnerability.
3
What types of attacks can be executed via CVE-2007-4242?
CVE-2007-4242 can be exploited by remote attackers using large attachments to bypass virus scanning.
4
Which versions of Astaro Security Gateway are affected by CVE-2007-4242?
CVE-2007-4242 affects Astaro Security Gateway version 7.0.
5
Is there a workaround for CVE-2007-4242?
A possible workaround for CVE-2007-4242 is to restrict the maximum attachment size allowed in email settings.