Security Intelligence Operations - Cisco Systems
Guest
 

Security Intelligence Operations


Ipswitch IMail Server Remote Denial of Service Vulnerability

 
Security Activity BulletinPowered by Cisco Security IntelliShield Alert Manager

Threat Type:IntelliShield: Security Activity Bulletin
IntelliShield ID:18599
Version:1
First Published:November 06, 2009 10:00 AM EST
Last Published:November 06, 2009 10:00 AM EST
Port: Not Available
CVE:CVE-2007-3926
 
Urgency: Unlikely Use
Credibility: Confirmed
Severity: Mild Damage
 
Version Summary:

Ipswitch IMail Server contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service condition. Updates are available.



Description

Ipswitch IMail Server versions 2006 that are prior to 2006.21 contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.

The vulnerability is due to an unspecified error in the handling of an overwritten destructor.  An unauthenticated, remote attacker could exploit this vulnerability by unspecified means to cause the affected application to crash, resulting in a DoS condition.

Ipswitch has confirmed this vulnerability and released updated software.

Ipswitch has issued release notes at the following link: Release Notes 2006.21

Ipswitch has released updated software at the following link: IMail Server 2006.21

 
Alert History
 

Initial Release



Product Sets
 
The security vulnerability applies to the following combinations of products.

Primary Products:
Ipswitch, Inc.IMail Server2006 .01, .02, .02a, .03, .1, .2, Base

Associated Products:
N/A



LEGAL DISCLAIMER
The urgency and severity ratings of this alert are not tailored to individual users; users may value alerts differently based upon their network configurations and circumstances. THE ALERT, AND INFORMATION CONTAINED THEREIN, ARE PROVIDED ON AN "AS IS" BASIS AND DO NOT IMPLY ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE ALERT, AND INFORMATION CONTAINED THEREIN, OR MATERIALS LINKED FROM THE ALERT, IS AT YOUR OWN RISK. INFORMATION IN THIS ALERT AND ANY RELATED COMMUNICATIONS IS BASED ON OUR KNOWLEDGE AT THE TIME OF PUBLICATION AND IS SUBJECT TO CHANGE WITHOUT NOTICE. CISCO RESERVES THE RIGHT TO CHANGE OR UPDATE ALERTS AT ANY TIME.