The NTLM_UnPack_Type3 function in MENTLM.dll in MailEnable Professional 2.35 and earlier allows remote attackers to cause a denial of service (application crash) via certain base64-encoded data following an AUTHENTICATE NTLM command to the imap port (143/tcp), which results in an out-of-bounds read.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-02-15T02:00:00
Updated: 2024-08-07T12:34:21.422Z
Reserved: 2007-02-14T00:00:00
Link: CVE-2007-0955
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-02-15T02:28:00.000
Modified: 2024-11-21T00:27:09.067
Link: CVE-2007-0955
Redhat
No data.