POP3: Buffer Overflow Username

This protocol anomaly triggers when it detects a POP3 USER command argument that is too long. This can indicate a buffer overflow attempt.

Extended Description

Receiving such a message could indicate a software misconfiguration or an attacker is attempting to cause a buffer overflow. The impact depends on how the POP3 server handles those packets.

Short Name
POP3:OVERFLOW:USER
Severity
Major
Recommended
True
Recommended Action
Drop
Category
POP3
Keywords
Buffer CVE-2002-1781 CVE-2006-2502 CVE-2006-4364 Overflow Username bid:18056 bid:19651 bid:25496 bid:4055
Release Date
08/27/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown
CVSS Score

7.5

5.0

5.1

Found a potential security threat?