PT-1998-1126 · Apple · Appleshare Mail Server+1
Published
1998-04-08
·
Updated
2017-11-21
·
CVE-1999-1015
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Apple AppleShare Mail Server version 5.0.3
Apple AppleShare Mail Server versions prior to 5.0.3 on MacOS 8.1 and earlier
Description
A buffer overflow issue allows a remote attacker to cause a denial of service by sending a long HELO command, resulting in a crash.
Recommendations
For Apple AppleShare Mail Server version 5.0.3, consider upgrading to a newer version to resolve the issue.
For Apple AppleShare Mail Server versions prior to 5.0.3 on MacOS 8.1 and earlier, consider upgrading to a newer version to resolve the issue.
As a temporary workaround, consider restricting access to the HELO command to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Appleshare Mail Server
Apple Macos