CVE-2008-2859: Medium severity netwin surgemail vulnerability
Published Jun 25, 2008
·Updated
Unspecified vulnerability in the IMAP service in NetWin SurgeMail before 3.9g2 allows remote attackers to cause a denial of service (daemon crash) via unknown vectors related to an "imap command."
Affected Software
22 affected components
Netwin Surgemail<=3.9g
Netwin Surgemail=3.8a
Netwin Surgemail=3.8b
Netwin Surgemail=3.8d
Netwin Surgemail=3.8f
Netwin Surgemail=3.8f2
Netwin Surgemail=3.8f3
Netwin Surgemail=3.8i
Netwin Surgemail=3.8i2
Netwin Surgemail=3.8i3
Netwin Surgemail=3.8k
Netwin Surgemail=3.8k2
Netwin Surgemail=3.8k3
Netwin Surgemail=3.8k4
Netwin Surgemail=3.8m
Netwin Surgemail=3.8o
Netwin Surgemail=3.8q
Netwin Surgemail=3.8s
Netwin Surgemail=3.8u
Netwin Surgemail=3.9a
Netwin Surgemail=3.9c
Netwin Surgemail=3.9e
Event History
Jun 25, 2008
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2859?
CVE-2008-2859 has a high severity rating due to its potential to cause a denial of service with crashing effects on the IMAP service.
2
How do I fix CVE-2008-2859?
To mitigate CVE-2008-2859, you should upgrade to NetWin SurgeMail version 3.9g2 or later.
3
What versions of NetWin SurgeMail are affected by CVE-2008-2859?
CVE-2008-2859 affects all versions of NetWin SurgeMail up to and including 3.9g.
4
What is the impact of exploiting CVE-2008-2859?
Exploiting CVE-2008-2859 can result in a denial of service by crashing the SurgeMail daemon.
5
Is there any known workaround for CVE-2008-2859?
There are no known workarounds for CVE-2008-2859, so it is recommended to upgrade to a patched version.