Stack-based buffer overflow in the SMTP service support in vsmon.exe in Zone Labs ZoneAlarm before 4.5.538.001, ZoneLabs Integrity client 4.0 before 4.0.146.046, and 4.5 before 4.5.085, allows remote attackers to execute arbitrary code via a long RCPT TO argument.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/9696 | Vendor Advisory |
http://www.kb.cert.org/vuls/id/619982 | Third Party Advisory US Government Resource |
http://download.zonelabs.com/bin/free/securityAlert/8.html | |
http://www.ciac.org/ciac/bulletins/o-084.shtml | |
http://www.osvdb.org/3991 | |
http://marc.info/?l=bugtraq&m=107722656827427&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/14991 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-11-22 21:00
Updated : 2017-10-09 18:30
NVD link : CVE-2004-0309
Mitre link : CVE-2004-0309
JSON object : View
CWE
Products Affected
zonelabs
- zonealarm
- integrity