Previous articleBack to news listNext article |
Sponsored links |
Want to become one of our authors and see your work published on ALLSeek.iNFO ? |
| AN HTTPD Buffer Overflow in Processing SOCKS4 Requests Allows Remote Code Execution |
|---|
Categorie: Vulnerability Posted: 2002-10-23 by ReCall Views: 337 Source: Click here | Current Rating: Not rated
|
|
| Details |
|---|
A vulnerability was reported in the AN HTTP Server web server for Microsoft Windows platforms. A remote user can execute arbitrary code on the system.
It is reported that a remote user can send a SOCKS4 request containing a long username to the server to trigger a buffer overflow and execute arbitrary code on the target host.
A demonstration exploit is provided in the Source Message.
Impact: A remote user can execute arbitrary code on the server with the privileges of the web server process.
Solution: The vendor has released a fixed version (1.41d), available at:
http://www.st.rim.or.jp/~nakata/
http://www.st.rim.or.jp/~nakata/httpd141d.exe |
| Syndication |
|---|
Permalink Email this
The URI to TrackBack this entry is: http://allseek.info/news/trackback.php?id=120
|
| User comments (post your comments ) |
|---|
Only registerd members can post comments and articles |
|
Previous articleBack to news listNext article |