HIGH · 7.8

CVE-2006-7038

Multiple buffer overflows in MERCUR Messaging 2005 before Service Pack 4 allow remote attackers to cause a denial of service (crash) via (1) "long command lines at port 32000" and (2) certain name ser...

Vulnerability Description

Multiple buffer overflows in MERCUR Messaging 2005 before Service Pack 4 allow remote attackers to cause a denial of service (crash) via (1) "long command lines at port 32000" and (2) certain name service queries that are not properly handled by the SMTP service.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
Atrium SoftwareMercur Messaging 20055.0_sp3

References

FAQ

What is CVE-2006-7038?

CVE-2006-7038 is a vulnerability with a CVSS score of 7.8 (HIGH). Multiple buffer overflows in MERCUR Messaging 2005 before Service Pack 4 allow remote attackers to cause a denial of service (crash) via (1) "long command lines at port 32000" and (2) certain name ser...

How severe is CVE-2006-7038?

CVE-2006-7038 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-7038?

Check the references section above for vendor advisories and patch information. Affected products include: Atrium Software Mercur Messaging 2005.