header-logo
Suggest Exploit
vendor:
MediaMail
by:
SecurityFocus
7,2
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: MediaMail
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: No
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002

Buffer Overflow Vulnerability in MediaMail

A buffer overflow vulnerability has been reported for the MediaMail binary that may result in a user obtaining elevated privileges. An attacker, using a custom crafted string, could overwrite stack memory, including the return address of a function, and potentially execute arbitrary code with group 'mail' privileges.

Mitigation:

No known mitigation
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/7672/info

A buffer overflow vulnerability has been reported for the MediaMail binary that may result in a user obtaining elevated privileges.

Although unconfirmed, an attacker, using a custom crafted string, could overwrite stack memory, including the return address of a function, and potentially execute arbitrary code with group 'mail' privileges.

sh$ export $HOME=`perl -e 'print "A"x12096'
sh$ /usr/bin/X11/MediaMail