Mah-Jong Server NULL Pointer Dereference Remote Denial Of Service Vulnerability
BID:10343
Info
Mah-Jong Server NULL Pointer Dereference Remote Denial Of Service Vulnerability
| Bugtraq ID: | 10343 |
| Class: | Input Validation Error |
| CVE: |
CVE-2004-0458 |
| Remote: | Yes |
| Local: | No |
| Published: | May 13 2004 12:00AM |
| Updated: | Jul 12 2009 04:07AM |
| Credit: | This issue was disclosed in a Debian advisory. |
| Vulnerable: |
Nicolas Boullis Mah-Jong 1.6 Nicolas Boullis Mah-Jong 1.4 |
| Not Vulnerable: | |
Discussion
Mah-Jong Server NULL Pointer Dereference Remote Denial Of Service Vulnerability
It has been reported that Mah-Jong server is prone to a remote denial of service vulnerability that may cause the server to crash. The issue has been reported to be exploitable so that a remote attacker may cause a vulnerable server to crash by dereferencing a NULL pointer.
It is not currently known whether this issue is restricted to Debian maintained versions of mah-jong or not. Although unconfirmed, other versions may also be affected.
It has been reported that Mah-Jong server is prone to a remote denial of service vulnerability that may cause the server to crash. The issue has been reported to be exploitable so that a remote attacker may cause a vulnerable server to crash by dereferencing a NULL pointer.
It is not currently known whether this issue is restricted to Debian maintained versions of mah-jong or not. Although unconfirmed, other versions may also be affected.
Exploit / POC
Mah-Jong Server NULL Pointer Dereference Remote Denial Of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Mah-Jong Server NULL Pointer Dereference Remote Denial Of Service Vulnerability
Solution:
Debian have released an advisory (DSA 503-1), which contains fixes to address this issue. Affected users are advised to upgrade as soon as possible. Further details regarding applying fixes are available in the referenced advisory.
Nicolas Boullis Mah-Jong 1.4
Solution:
Debian have released an advisory (DSA 503-1), which contains fixes to address this issue. Affected users are advised to upgrade as soon as possible. Further details regarding applying fixes are available in the referenced advisory.
Nicolas Boullis Mah-Jong 1.4
-
Debian mah-jong_1.4-3_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _alpha.deb -
Debian mah-jong_1.4-3_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _arm.deb -
Debian mah-jong_1.4-3_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _hppa.deb -
Debian mah-jong_1.4-3_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _i386.deb -
Debian mah-jong_1.4-3_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _ia64.deb -
Debian mah-jong_1.4-3_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _m68k.deb -
Debian mah-jong_1.4-3_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _mips.deb -
Debian mah-jong_1.4-3_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _mipsel.deb -
Debian mah-jong_1.4-3_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _powerpc.deb -
Debian mah-jong_1.4-3_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _s390.deb -
Debian mah-jong_1.4-3_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/m/mah-jong/mah-jong_1.4-3 _sparc.deb
References
Mah-Jong Server NULL Pointer Dereference Remote Denial Of Service Vulnerability
References:
References: