Security Home > BackOffice Software > Exchange Server

Malformed MIME Header Vulnerability

A security vulnerability exists in Microsoft® Exchange Server 5.5 which could enable a malicious user to cause an Exchange server to fail.

Issue

As part of its normal processing of incoming mails, Exchange server checks for invalid values in the MIME header fields. However, if a particular type of invalid value is present in certain fields, the Exchange service will fail. Normal operations can be restored by restarting the Exchange service and deleting the offending mail.

Affected Products

  • Microsoft Exchange Server 5.5

Solution

The vulnerability can be eliminated either by applying the patch or Exchange 5.5 Service Pack 4.

Download

Patch: http://www.microsoft.com/Downloads/Release.asp?ReleaseID=25443

Further Details

Source: Microsoft Corporation

Reference: Microsoft Corporation

Updated: October 31, 2000

>> Recommended Download - secure your PC from spyware, adware and malware now with Spyware Doctor <<