The NTLM_UnPack_Type3 function in MENTLM.dll in MailEnable Professional 2.35 and earlier allows remote attackers to cause a denial of service (application crash) via certain base64-encoded data following an AUTHENTICATE NTLM command to the imap port (143/tcp), which results in an out-of-bounds read.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T12:34:21.422Z
Reserved: 2007-02-14T00:00:00
Link: CVE-2007-0955

No data.

Status : Deferred
Published: 2007-02-15T02:28:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2007-0955

No data.