CVE-2025-42599
Description
Active! mail 6 BuildInfo: 6.60.05008561 and earlier contains a stack-based buffer overflow vulnerability. Receiving a specially crafted request created and sent by a remote unauthenticated attacker may lead to arbitrary code execution and/or a denial-of-service (DoS) condition.
Summary dbcve.org
Stack-based buffer overflow vulnerability in Active! mail 6 (BuildInfo 6.60.05008561 and earlier) allows remote unauthenticated attackers to send specially crafted requests that can overwrite stack memory, potentially leading to arbitrary code execution or denial of service.
Mitigation
Update Active! mail 6 to the latest patched version. If patching is delayed, restrict network access to the mail service using firewalls or network segmentation to limit exposure to untrusted sources.