Kerio MailServer < 6.5.0 Multiple Vulnerabilities
Critical Nessus Plugin ID 31119
SynopsisThe remote mail server is affected by multiple vulnerabilities.
DescriptionThe remote host is running Kerio MailServer, a commercial mail server available for Windows, Linux, and Mac OS X platforms.
According to its banner, the installed version of Kerio MailServer is affected by several issues :
- There is a possible buffer overflow in the Visnetic antivirus plug-in.
- There is an as-yet unspecified security issue with NULL DACL in the AVG plug-in.
- Memory corruption is possible during uudecode decoding.
SolutionUpgrade to Kerio MailServer 6.5.0 or later.