Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Qualcomm qpopper AUTH命令远程缓冲区溢出漏洞
Vulnerability Description
qpopper是Qualcomm的pop3服务器,是一个自由软件。 Qualcomm qpopper (3.x)版本发现存在缓冲区溢出问题。可能被远程攻击者用以获得服务器的root用户权限。 当向qpopper服务器发送一个带超长参数的AUTH命令,就会发生溢出,问题出在pop_msg.c的68行左右,vsprintf() 或 sprintf()没有进行边界检查。由于该进程是以root用户权限运行的,所以,入侵者可构造特定的数据传递给服务器,以root用户权限执行命令。
CVSS Information
N/A
Vulnerability Type
N/A