The character converters in the Spamhunter and Language ID modules for Symantec Brightmail AntiSpam 6.0.1 before patch 132 allow remote attackers to cause a denial of service (crash) via messages with the ISO-8859-10 character set, which is not recognized by the converters.
References
Link | Resource |
---|---|
ftp://ftp.symantec.com/public/english_us_canada/products/sba/sba_60x/updates/p132_notes.htm | Patch |
http://secunia.com/advisories/13489 | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/697598 | Patch Third Party Advisory US Government Resource |
http://www.osvdb.org/12459 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/18530 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2005-03-10T05:00:00
Updated: 2017-07-10T14:57:01
Reserved: 2005-03-10T00:00:00
Link: CVE-2004-1768
JSON object: View
NVD Information
Status : Modified
Published: 2004-12-17T05:00:00.000
Modified: 2017-07-11T01:31:20.340
Link: CVE-2004-1768
JSON object: View
Redhat Information
No data.
CWE