Train

PDA

توجه ! این یک نسخه آرشیو شده میباشد و در این حالت شما عکسی را مشاهده نمیکنید برای مشاهده کامل متن و عکسها بر روی لینک مقابل کلیک کنید : vpop3d Denial Of Service


admin
08-25-2003, 08:58 PM
Seems that an attacker (remote or local) can cause a DOS on the vpop3d server, using a lengthy request.. This seems to cause the pop3 server to timeout then daemon drops...Note this was tested locally, with the binary.. Once we've hit it with our huge USER string it gives this mesg after 5mins or so then dies... "-ERR POP3 Server Abnormal Shutdown: Timeout waiting for command from client" Impact: DOS on the vpop3d daemon, means a manual restart of the daemon. added by Radost