CVE-2008-7104

Sophos PureMessage for Microsoft Exchange < 3.0.2 - Denial of Service via Crafted RTF or PDF File

Title source: llm
STIX 2.1

Description

Sophos PureMessage Scanner service (PMScanner.exe) in PureMessage for Microsoft Exchange 3.0 before 3.0.2 allows remote attackers to cause a denial of service (message queue delay and incomplete spam rule update) via a crafted (1) RTF or (2) PDF file.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/30881
Patch, Vendor Advisory x_refsource_confirm
http://www.sophos.com/support/knowledgebase/article/44385.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/44775

Scores

EPSS 0.0253
EPSS Percentile 85.6%

Details

Status published
Products (1)
sophos/puremessage_for_microsoft_exchange 3.0
Published Aug 27, 2009
Tracked Since Feb 18, 2026