TUCoPS :: Windows Net Apps :: csmdos~1.txt

CSM Mail Server for Win95/NT DoS Attack

Local / Remote D.o.S Attack in  CSM Mail Server for Windows 95/NT

USSR Advisory Code:   USSR-99027

Release Date:
December 29, 1999 [3/5]

Systems Affected:
CSM Mail Server for Windows 95/NT and others old versions.
Version: 2000-01A
Version: 1999-07M
Version: 1999-07I
Version: 1999-07H
Version: 1999-07G
Version: 1999-07F
Version: 1999-07b

About The Software:
CSM Mail Server for Windows 95/NT allows:
* FIREWALL is usefull to reject unwanted calls to the SMTP server.
* ANTI-SPAMMING is usefull to reject unwanted messages.
* To define VIRTUAL DOMAINS which are physically manage by the
  server itself.
* To define SECONDARY DOMAINS which are physically managed by the
  same or another server computer.
* To ROUTE (send or receive) messages between itself and the Internet.
* To ROUTE (send via SMTP) received message to the secondary domains.
* To TRANSFER (send or receive) messages between itself and the
  worktations attached to the local area network (LAN).
* To MANAGE the user mailboxes.
* To DISRIBUTE the messages in the mailboxes.
* It can be installed behind a Firewall or a CSM Proxy server.


UssrLabs found a Local / Remote Buffer overflow,and  maybe remotely
exploitable buffer overflow,
the overflow is caused by a (long HELO) in the login procedure.

[$ telnet 25
Connected to
Escape character is '^]'.
220 SMTP CSM Mail Server ready at (Version 2000.08.A -
helo [buffer]

Where [buffer] is aprox. 12000 characters. At his point the server overflows
and crashes.

Vendor Status:

Vendor   Url:
Program Url:


Noting yet :(

