This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SERVER-MAIL Dovecot Submission-Login Service NULL Pointer Dereference

Hello everyone, after updating to firmware SFOS 17.5.7 MR-7 I have received many alerts from network attacks:

 

'SERVER-MAIL Dovecot Submission-Login Service NULL Pointer Dereference"

can anybody help me?

thank you all



This thread was automatically locked due to age.
Parents
  • Hi, I am facing the same issue since 26th July. I contacted Sophos support and got a pathetic reply. All we need is an explanation why this is happening or an acknowledgement that Sophos is looking in to this.

    Below is the reply I got to my inquiry from Sophos. I have removed my internal IP address and the name of the technical agent.

     

    Hello Shenath,

    This is regarding the service request number 9037848.

    According to the logs, the attack is been detected and the source IP is ***.***.***.***.

    To drop the traffic for that signature under IPS settings.

    If you need immediate assistance on this case, you can contact Sophos Technical Support via phone.

    Telephone contact numbers can be found here:www.sophos.com/.../contact-support.aspx

    IN Support Lines: Toll Free: 000 800 100 8381 International: (+65) 6776 7467

    UK Support Lines: From UK: 0844 767 4670 (0844 SOPHOS-0) International: +44 (0)1235 465818

    US Support Lines: Toll Free: 1-888-SOPHOS-9 (1-888-767-4679) International: 1-781-494-5800

    AU Support Lines: Australia: 1300 041 895 New Zealand: 0800 884 012 International: +61 2 9409 9111

    Please contact us for any further assistance.


    Regards, 

    ****** ************ 
    Sophos Technical Support
    www.sophos.com/.../contact-support.aspx 

    Get Product Notifications via SMS - Sophos Mobile Notification Service: https://sms.sophos.com
    Support Knowledge Base: community.sophos.com/kb
    Follow us on Twitter @SophosSupport
    Sophos Community (discussion forums): https://community.sophos.com

    SOPHOS - CyberSecurity made simple
     

Reply
  • Hi, I am facing the same issue since 26th July. I contacted Sophos support and got a pathetic reply. All we need is an explanation why this is happening or an acknowledgement that Sophos is looking in to this.

    Below is the reply I got to my inquiry from Sophos. I have removed my internal IP address and the name of the technical agent.

     

    Hello Shenath,

    This is regarding the service request number 9037848.

    According to the logs, the attack is been detected and the source IP is ***.***.***.***.

    To drop the traffic for that signature under IPS settings.

    If you need immediate assistance on this case, you can contact Sophos Technical Support via phone.

    Telephone contact numbers can be found here:www.sophos.com/.../contact-support.aspx

    IN Support Lines: Toll Free: 000 800 100 8381 International: (+65) 6776 7467

    UK Support Lines: From UK: 0844 767 4670 (0844 SOPHOS-0) International: +44 (0)1235 465818

    US Support Lines: Toll Free: 1-888-SOPHOS-9 (1-888-767-4679) International: 1-781-494-5800

    AU Support Lines: Australia: 1300 041 895 New Zealand: 0800 884 012 International: +61 2 9409 9111

    Please contact us for any further assistance.


    Regards, 

    ****** ************ 
    Sophos Technical Support
    www.sophos.com/.../contact-support.aspx 

    Get Product Notifications via SMS - Sophos Mobile Notification Service: https://sms.sophos.com
    Support Knowledge Base: community.sophos.com/kb
    Follow us on Twitter @SophosSupport
    Sophos Community (discussion forums): https://community.sophos.com

    SOPHOS - CyberSecurity made simple
     

Children
No Data