Search

published date: December 31, 2004

CVE-2004-1558 : Denial of Service Vulnerability

Description

Multiple stack-based buffer overflows in YPOPs! (aka YahooPOPS) 0.4 through 0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) POP3 USER command or (2) SMTP request.

Product(s):

  • YPOPS YPOPS 0.4.1
  • YPOPS YPOPS 0.4.2
  • YPOPS YPOPS 0.4.3
  • Ypops 0.4.4
  • Ypops 0.4.5
  • Ypops 0.4.6

Question to Ask Vendors:

  1. Can you confirm whether your systems are affected by CVE-2004-1558, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-2004-1558 in your products or services, and how will you communicate updates on this issue to us as your customer?

READY TO GET RESULTS YOU CAN TRUST?