[ news_security_news ] IPSwitch IMail Server Has A Glitch
David Utter Staff Writer
2007-03-07
Insider Reports RSS Feed
Multiple ActiveX control buffer overflow issues could lead to an IPSwitch-equipped machine being compromised if someone uses it to visit a malicious website.
Those who have already upgraded their IPSwitch IMail Server to the latest update should avoid these issues.
An announcement at iDefense Labs reported the potential remote exploitation of several ActiveX issues in IMail Server 2006.
"Multiple stack and heap based buffer overflows caused be unsafe strcpy and wsprintf calls could corrupt memory in a way that leads to code execution," iDefense said in its advisory.
As a workaround, iDefense noted that setting the killbit for three CLSIDs will prevent the vulnerabilities from being exploited within Internet Explorer.
---
Tags: iDefense, IPSwitch, IMail, Server
About the Author:
David Utter is a business and technology writer for SecurityProNews and WebProNews.
More news_security_news Articles
Insider Reports RSS Feed
|
|