Vulnerabilities > CVE-2007-2187 - Buffer Overflow And DNS Spoofing vulnerability in Extremail 2.1/2.1.1

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
extremail
critical
exploit available

Summary

Stack-based buffer overflow in eXtremail 2.1.1 and earlier allows remote attackers to execute arbitrary code via a long DNS response. NOTE: this might be related to CVE-2006-6926.

Vulnerable Configurations

Part Description Count
Application
Extremail
2

Exploit-Db

descriptioneXtremail <= 2.1.1 DNS Parsing Bugs Remote Exploit PoC. CVE-2007-2187. Dos exploit for linux platform
fileexploits/linux/dos/3769.c
idEDB-ID:3769
last seen2016-01-31
modified2007-04-20
platformlinux
port
published2007-04-20
reportermu-b
sourcehttps://www.exploit-db.com/download/3769/
titleeXtremail <= 2.1.1 DNS Parsing Bugs Remote Exploit PoC
typedos