Citadel/UX select() Bitmap Remote Buffer Overflow Vulnerability
BID:12344
Info
Citadel/UX select() Bitmap Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 12344 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 24 2005 12:00AM |
| Updated: | Jan 24 2005 12:00AM |
| Credit: | Discovery is credited to 3APA3A <[email protected]>. |
| Vulnerable: |
Citadel/UX Citadel/UX 6.27 Citadel/UX Citadel/UX 6.26 Citadel/UX Citadel/UX 6.24 Citadel/UX Citadel/UX 6.23 Citadel/UX Citadel/UX 6.0 8 Citadel/UX Citadel/UX 6.0 7 Citadel/UX Citadel/UX 5.91 Citadel/UX Citadel/UX 5.90 |
| Not Vulnerable: |
Citadel/UX Citadel/UX 6.30 Citadel/UX Citadel/UX 6.29 |
Discussion
Citadel/UX select() Bitmap Remote Buffer Overflow Vulnerability
Citadel/UX is prone to a remote buffer overflow due to implementation of the select() system call. This issue could be exploited to cause a denial of service or potentially execute arbitrary code.
This vulnerability is reported to affect Citadel/UX versions prior to 6.29.
Citadel/UX is prone to a remote buffer overflow due to implementation of the select() system call. This issue could be exploited to cause a denial of service or potentially execute arbitrary code.
This vulnerability is reported to affect Citadel/UX versions prior to 6.29.
Exploit / POC
Citadel/UX select() Bitmap Remote Buffer Overflow Vulnerability
The researcher responsible for discovering this issue has developed exploit code to leverage this vulnerability. The exploit code has not been released to the public.
The researcher responsible for discovering this issue has developed exploit code to leverage this vulnerability. The exploit code has not been released to the public.
Solution / Fix
Citadel/UX select() Bitmap Remote Buffer Overflow Vulnerability
Solution:
The vendor has reported that Citadel/UX 6.29 and subsequent versions are not vulnerable to these issues. Citadel/UX 6.30 is available:
Citadel/UX Citadel/UX 5.90
Citadel/UX Citadel/UX 5.91
Citadel/UX Citadel/UX 6.0 7
Citadel/UX Citadel/UX 6.0 8
Citadel/UX Citadel/UX 6.23
Citadel/UX Citadel/UX 6.24
Citadel/UX Citadel/UX 6.26
Citadel/UX Citadel/UX 6.27
Solution:
The vendor has reported that Citadel/UX 6.29 and subsequent versions are not vulnerable to these issues. Citadel/UX 6.30 is available:
Citadel/UX Citadel/UX 5.90
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
Citadel/UX Citadel/UX 5.91
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
Citadel/UX Citadel/UX 6.0 7
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
Citadel/UX Citadel/UX 6.0 8
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
Citadel/UX Citadel/UX 6.23
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
Citadel/UX Citadel/UX 6.24
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
Citadel/UX Citadel/UX 6.26
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
Citadel/UX Citadel/UX 6.27
-
Citadel/UX citadel-6.30.tar.gz
http://easyinstall.citadel.org/citadel-6.30.tar.gz
References
Citadel/UX select() Bitmap Remote Buffer Overflow Vulnerability
References:
References: