The character converters in the Spamhunter and Language ID modules for Symantec Brightmail AntiSpam 6.0.1 before patch 132 allow remote attackers to cause a denial of service (crash) via messages with the ISO-8859-10 character set, which is not recognized by the converters.
References
Link | Resource |
---|---|
ftp://ftp.symantec.com/public/english_us_canada/products/sba/sba_60x/updates/p132_notes.htm | Patch |
http://www.kb.cert.org/vuls/id/697598 | Patch Third Party Advisory US Government Resource |
http://www.osvdb.org/12459 | Patch Vendor Advisory |
http://secunia.com/advisories/13489 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/18530 |
Configurations
Information
Published : 2004-12-16 21:00
Updated : 2017-07-10 18:31
NVD link : CVE-2004-1768
Mitre link : CVE-2004-1768
JSON object : View
CWE
Products Affected
symantec
- brightmail_antispam