Vulnerabilities > CVE-2008-5426 - Resource Management Errors vulnerability in Kaspersky LAB Kaspersky Internet Security Suite 2009

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL

Summary

Kaspersky Internet Security Suite 2009 does not properly handle (1) multipart/mixed e-mail messages with many MIME parts and possibly (2) e-mail messages with many "Content-type: message/rfc822;" headers, which allows remote attackers to cause a denial of service (stack consumption or other resource consumption) via a large e-mail message, a related issue to CVE-2006-1173.

Vulnerable Configurations

Part Description Count
Application
Kaspersky_Lab
1

Common Weakness Enumeration (CWE)