CVE-2008-7106: Medium severity sophos puremessage anti-virus vulnerability
The installation of Sophos PureMessage for Microsoft Exchange 3.0 before 3.0.2, when both anti-virus and anti-spam are supported, does not create or launch the associated scan engines when the system is under heavy load, which has unspecified impact, probably remote bypass of scanner protection or a denial of service (message loss or delay).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-7106?
CVE-2008-7106 has a moderate severity level due to potential remote bypass of scanner protection.
How do I fix CVE-2008-7106?
To fix CVE-2008-7106, upgrade to Sophos PureMessage for Microsoft Exchange version 3.0.2 or later.
What versions of Sophos PureMessage are affected by CVE-2008-7106?
CVE-2008-7106 affects Sophos PureMessage for Microsoft Exchange version 3.0 prior to 3.0.2.
What impact does CVE-2008-7106 have on my system?
CVE-2008-7106 can potentially lead to a remote bypass of scanner protection when the system is under heavy load.
Is there a workaround for CVE-2008-7106?
There is no specified workaround for CVE-2008-7106; upgrading to the fixed version is recommended.