CVE-2008-5426: Medium severity Kaspersky Lab Kaspersky Internet Security Suite vulnerability
Kaspersky Internet Security Suite 2009 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which allows remote attackers to cause a denial of service (stack consumption or other resource consumption) via a large e-mail message, a related issue to CVE-2006-1173.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5426?
CVE-2008-5426 is classified as a denial of service vulnerability that can lead to stack consumption.
How do I fix CVE-2008-5426?
To remediate CVE-2008-5426, ensure you update Kaspersky Internet Security Suite 2009 to the latest version provided by the vendor.
What software is affected by CVE-2008-5426?
CVE-2008-5426 specifically affects Kaspersky Internet Security Suite version 2009.
What types of attacks are associated with CVE-2008-5426?
CVE-2008-5426 allows remote attackers to exploit the vulnerability via specially crafted multipart/mixed e-mail messages.
How does CVE-2008-5426 impact system resources?
CVE-2008-5426 can lead to stack consumption, resulting in a denial of service for the affected application.