Atrium Software Mercur Mail Server 3.2 - Multiple Buffer Overflows (2)
Author: Ussr Labs
type: dos
platform: windows
port:
date_added: 2000-03-14
date_updated: 2012-07-16
verified: 1
codes: CVE-2000-0198;OSVDB-12036
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/1051/info
Atrium Software Mercur is a SMTP, POP3, and IMAP mail server. Insufficient boundary checking exists in the code that handles within the SMTP "mail from" command, the POP3 "user" command and the IMAP "login" command. The application will crash if an overly long string is used as an argument to any of these commands.
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/19807-1.exe
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/19807-2.exe
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/19807-3.zip