[Kitetoa, les pizzaïolos du Ouèb

w00giving 99 -12-

  navbarrfest
Sommaire de ce dossier
Ze advisories
Ze linkz
 

Norton Antivirus' POProxy

w00w00 Security Development (WSD)

--------------------------------------------------------------------------
Discovered by: Nicholas Brawn  ( ncb@attrition.org )

POProxy is the program used by Norton Antivirus to proxy POP3 mail
collection, in order to identify hostile code (viruses, trojans, etc)
before it reaches the system. The POProxy program listens on all
configured network interfaces on TCP port 110.

The POProxy program crashes (stack/instruction pointer overwritten) when
265+ characters are sent as the parameter to the "USER" command. This
affects Win 95/98/NT/2000 and allows a remote user to execute arbitrary
code.

Note: when tested against POProxy on NT 4.0, this caused the Doctor Watson
process to send CPU utilisation to %100.

--------------------------------------------------------------------------
Exploit:

None at this time.

--------------------------------------------------------------------------
Patch:

Until Norton AV releases an official patch, we provide the following work
around:

It is recommended that you disable "Email Protection" in Norton Antivirus,
until a workaround or patch is made available by the vendor.

To disable email protection go to:
Start ->Programs ->Norton AntiVirus  ->Norton AntiVirus 2000
(or whatever it's installed on)

Click on "Options", and under Email Protection, uncheck to Enable Email
Protection box.

If disabling email protection is not an acceptable option, you may choose to
implement a third-party firewalling product to disallow unauthorized
connections to TCP port 110. Checkout
http://www.networkice.com

--------------------------------------------------------------------------
Contributors to w00giving: eEye Digital Security and Underground Security
Systems Research (USSR)

w00friends:

http://www.attrition.org
http://www.eEye.com
http://www.ussrback.com

Liens de navigation

Naviguer, lire....

Page d'accueil

Nouveautés

Le Sommaire
de
Kitetoa

(orientation...)

Communiquer...

Le Forum
Kitetoa-blah-blah

Nous écrire

Les mailing-lists

Les stats du serveur

Qui sommes-nous?

Les rubriques!

Les livres publiés par Kitetoa

Les interviews

Kit'Investisseurs

Fonds d'écran et autres trucs

Les rubriques!
(suite)

KitEcout'

KessTaVu?-KiteToile

Voyages

la malle de Kitetoa
(vieilleries du site)

Les dossiers

Le monde fou des Admins

Tati versus Kitetoa

Tegam versus Guillermito

Malade mental...

Qui est Jean-Paul Ney,
condamné pour
menaces de mort
réitérées contre Kitetoa?

Le texte de la condamnation
de Jean-Paul Ney
(résumé html)
(complet pdf)

Malade mental, bis repetita

Jean-Paul Ney condamné
pour diffamation
à l'encontre du webmaster
de Kitetoa.com

Condamnation de Jean-Paul Ney
pour diffamation (pdf)

D'autres choses...

Aporismes.com

Statisticator

L'association Kite-Aide

Rechercher...

Rechercher
sur le site

et sur le Net...

Jean-Paul Ney

Jean-Paul Ney