PT-2006-2320 · Microsoft · Outlook Web Access+2

Publicado

2006-12-31

·

Atualizado

2018-10-18

·

CVE-2006-1305

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Outlook versions 2000 through 2003
Description A denial of service issue exists due to the processing of e-mail header information. This could allow an attacker to send a malformed e-mail that causes the Outlook client to fail under certain circumstances. The client would continue to fail as long as the malformed e-mail message remains on the e-mail server. The issue may be related to long subject lines or a large number of recipients in To or CC headers.
Recommendations For Microsoft Outlook versions 2000 through 2003, the issue can be mitigated by deleting the malformed e-mail message from the e-mail server, which can be done by an e-mail administrator or by the user via another e-mail client such as Outlook Web Access or Outlook Express.

Correção

DoS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-1305

Produtos afetados

Outlook
Outlook Express
Outlook Web Access