Thread-topic: [SA20905] CommuniGate Pro POP Service Empty Inbox Denial of Service
>
> TITLE:
> CommuniGate Pro POP Service Empty Inbox Denial of Service
>
> SECUNIA ADVISORY ID:
> SA20905
>
> VERIFY ADVISORY:
> http://secunia.com/advisories/20905/
>
> CRITICAL:
> Less critical
>
> IMPACT:
> DoS
>
> WHERE:
> From remote
>
> SOFTWARE:
> CommuniGate Pro 5.x
> http://secunia.com/product/7170/
>
> DESCRIPTION:
> A vulnerability has been reported in CommuniGate Pro, which can be
> exploited by malicious users to cause a DoS (Denial of Service).
>
> The vulnerability is caused due to an unspecified error in the POP
> service when a client opens an empty inbox. This can be exploited via
> a specially crafted mail client to crash the service.
>
> SOLUTION:
> Update to version 5.1c2.
>
> PROVIDED AND/OR DISCOVERED BY:
> Reported by the vendor.
>