Home » Hacking News » BVRP Software SLMail POP3 buffer overflow
BVRP Software SLMail POP3 buffer overflow
by Mario Miri on May 17th, 2003 During the authentication process the attacker could cause a buffer overflow condition with potential of arbitrary code execution by supplying overly long password argument to the SLMail POP3 daemon.
Vulnerable:
BVRP Software SLMail 5.1.0.4420
Solution:
Issue has been fixed in 5.5 version of the software:
http://www.slmail.com
Discovered by:
NGSSoftware Insight Security Research, [email protected]