Mercury Mail Transport System AUTH CRAM-MD5 Buffer Overflow Vulnerability
Severity: HIGH
Advisory Date: JUL 21, 2015
DESCRIPTION
Mercury Mail Transport System is prone to a remote stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks when handling AUTH CRAM-MD5 requests. Attackers can exploit this issue to execute arbitrary code with the privileges of the user running the application.
TREND MICRO PROTECTION INFORMATION
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1006020