• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1010
  • Last Modified:

EXPLOIT IBM Lotus Notes HTML Message handling buffer overflow

I keep getting a notification from my firewall with the following message:


Appliance: FireboxX550e
Time: Mon Mar 07 22:18:00 2011 (CST)
Process: smtp
Message: Policy Name: SMTP-proxy-00 Action: ProxyDrop:  Reason: SMTP IPS match Source IP: 'their.ip.add.ress' Source Port: 9156 Destination IP: 'my.ip.add.ress' Destination Port: 25 sender: email@theircompany.com recipients: email@mycompany.com ips_msg: EXPLOIT IBM Lotus Notes HTML Message handling buffer overflow -1-1 signature_id: WG-1110399 threat_level: 80 signature_cat: smtp-server


I'm assuming there is a problem on their end but I just want to be sure.  I have not experienced any issues with my email server. (I am running Exchange 2003).
0
paulms53
Asked:
paulms53
1 Solution
 
Sjef BosmanGroupware ConsultantCommented:
My guess is that it's a problem on your end. Apparently, the firewall refuses a very long message, anyway one longer than an older Domino server can handle. If indeed you don't have a Domino server, you could remove the rule from the firewall's configuration.

But I'm no expert in this matter, just trying to explain what I think is happening...
0
 
paulms53Author Commented:
IPS signatures on my firewall
0

Featured Post

Easily manage email signatures in Office 365

Managing email signatures in Office 365 can be a challenging task if you don't have the right tool. CodeTwo Email Signatures for Office 365 will help you implement a unified email signature look, no matter what email client is used by users. Test it for free!

Tackle projects and never again get stuck behind a technical roadblock.
Join Now