Como se que muchos de mis cuates usan MultiVoIP y Imail-
MultiTech MultiVoIP Gateway Denial of Service Vulnerability
OPERATING SYSTEM:
MultiTech MultiVOIP Gateway MPV810
http://secunia.com/product/6381/MultiTech MultiVOIP Gateway MVP130
http://secunia.com/product/6378/MultiTech MultiVOIP Gateway MVP210
http://secunia.com/product/6379/MultiTech MultiVOIP Gateway MVP2410
http://secunia.com/product/6382/MultiTech MultiVOIP Gateway MVP3010
http://secunia.com/product/6383/MultiTech MultiVOIP Gateway MVP410
http://secunia.com/product/6380/DESCRIPTION:
Ejovi Nuwere has reported a vulnerability in MultiTech MultiVoIP
Gateway, which potentially can be exploited by malicious people to
cause a DoS (Denial of Service).
The vulnerability is caused due to a boundary error when parsing SIP
packets. This can be exploited to cause a buffer overflow via a
specially crafted SIP packet with an INVITE field that is longer than
60 characters.
Successful exploitation causes the device to reboot.
The vulnerability has been reported in models MVP130, MVP210, MVP410,
MPV810, MVP2410, and MVP3010.
---------------------------------------------------------------------------------------------
Ipswitch IMail Server IMAP and SMTP Service Two Vulnerabilities
SOFTWARE:
Ipswitch Collaboration Suite (ICS) 2.x
http://secunia.com/product/5167/IMail Server 8.x
http://secunia.com/product/3048/DESCRIPTION:
Two vulnerabilities have been reported in IMail Server, which can be
exploited by malicious users to cause a DoS (Denial of Service) and
to compromise a vulnerable system.
1) A format string error exists in the SMTPD32 service when parsing
arguments supplied to the "expn", "mail", "mail from", and "rcpt to"
commands. This can be exploited to execute arbitrary code via
specially crafted arguments sent to the affected commands.
2) An error exists in the IMAP4D32 service when handling user
supplied arguments passed to the IMAP LIST command. This can be
exploited by a logon user to cause a memory dereferencing error,
which crashes the IMAP service by supplying an argument of
approximately 8000 bytes to the command.
The vulnerabilities have been reported in IMail Server version 8.20.
Other versions prior to 8.22 may also be affected.
-------------------------------------------------------------------------------------------
Asi que, sin albur, ¡A parchar se ha dicho!
2 Live is 2 Ride.
Ricardo.