DNS: Microsoft Exchange Crafted MX Record

This signature detects attempts to exploit a known vulnerability in the way that Microsoft Windows Simple Mail Transfer Protocol (SMTP) component handles specially crafted DNS Mail Exchanger (MX) resource records. Because authentication is not required, an attacker can exploit this flaw by sending a specially crafted network message to a computer running the SMTP service. A successful attack can result in a denial-of-service condition.

Extended Description

The Microsoft Windows Simple Mail Transfer Protocol (SMTP) Server is prone to a denial-of-service vulnerability. Successful exploits will cause the affected SMTP server to stop responding, denying service to legitimate users.

Affected Products

Avaya messaging_application_server,Microsoft windows_server_2008_for_itanium-based_systems

Short Name
DNS:CRAFTED-MX
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
DNS
Keywords
CVE-2010-0024 Crafted Exchange MX Microsoft Record bid:39308
Release Date
04/13/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3339
False Positive
Unknown
Vendors

Microsoft

Avaya

CVSS Score

5.0

Found a potential security threat?