Jean-Yves Lefort Mail Notification is reported prone to three security vulnerabilities. The first issue that is reported is a remote denial of service vulnerability. The vulnerability presents itself due to a parsing error. A remote attacker may exploit this vulnerability to crash the affected software. The second reported issue presents itself when a malicious IMAP server response is handled. An attacker that hosts a malicious IMAP server may exploit this vulnerability to crash affected software. Finally, Mail Notification is reported prone to a remote buffer overflow vulnerability. This issue presents itself due to a lack of sufficient boundary checks performed on certain POP3 replies. An attacker that hosts a malicious POP3 server may exploit this vulnerability to execute arbitrary code in the context of the user that is running the affected software.
Jean-Yves Lefort Mail Notification is reported prone to three security vulnerabilities. The first issue that is reported is a remote denial of service vulnerability. The vulnerability presents itself due to a parsing error. A remote attacker may exploit this vulnerability to crash the affected software. The second reported issue presents itself when a malicious IMAP server response is handled. An attacker that hosts a malicious IMAP server may exploit this vulnerability to crash affected software. Finally, Mail Notification is reported prone to a remote buffer overflow vulnerability. This issue presents itself due to a lack of sufficient boundary checks performed on certain POP3 replies. An attacker that hosts a malicious POP3 server may exploit this vulnerability to execute arbitrary code in the context of the user that is running the affected software.