Simpleproxy Remote Syslog() Format String Vulnerability
BID:14666
Info
Simpleproxy Remote Syslog() Format String Vulnerability
| Bugtraq ID: | 14666 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-1857 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 26 2005 12:00AM |
| Updated: | Jul 12 2009 05:06PM |
| Credit: | Ulf Harnhammar from the Debian Security Audit Project discovered this vulnerability. |
| Vulnerable: |
Simpleproxy Simpleproxy 3.2 Simpleproxy Simpleproxy 3.1 Simpleproxy Simpleproxy 3.0 Simpleproxy Simpleproxy 2.2 b Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 |
| Not Vulnerable: |
Simpleproxy Simpleproxy 3.4 |
Discussion
Simpleproxy Remote Syslog() Format String Vulnerability
It is reported that simpleproxy contains a format string vulnerability. This issue is due to a failure of the applications to properly sanitize user-supplied input before using it as the format specifier in a formatted printing function.
Successful exploitation of this issue will allow an attacker to execute arbitrary code on the affected computer with the privileges of the affected package. This application may be run as the superuser in order to proxy privileged TCP ports.
Versions of simpleproxy prior to 3.4 are reported susceptible to this vulnerability.
It is reported that simpleproxy contains a format string vulnerability. This issue is due to a failure of the applications to properly sanitize user-supplied input before using it as the format specifier in a formatted printing function.
Successful exploitation of this issue will allow an attacker to execute arbitrary code on the affected computer with the privileges of the affected package. This application may be run as the superuser in order to proxy privileged TCP ports.
Versions of simpleproxy prior to 3.4 are reported susceptible to this vulnerability.
Exploit / POC
Simpleproxy Remote Syslog() Format String Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Simpleproxy Remote Syslog() Format String Vulnerability
Solution:
The vendor has released version 3.4 of simpleproxy to address this issue.
Debian GNU/Linux has released advisory DSA 786-1, along with fixes to address this issue. Please see the referenced advisory for further information.
Simpleproxy Simpleproxy 2.2 b
Simpleproxy Simpleproxy 3.0
Simpleproxy Simpleproxy 3.1
Simpleproxy Simpleproxy 3.2
Solution:
The vendor has released version 3.4 of simpleproxy to address this issue.
Debian GNU/Linux has released advisory DSA 786-1, along with fixes to address this issue. Please see the referenced advisory for further information.
Simpleproxy Simpleproxy 2.2 b
-
Simpleproxy simpleproxy-3.4.tar.gz
http://prdownloads.sourceforge.net/simpleproxy/simpleproxy-3.4.tar.gz? download
Simpleproxy Simpleproxy 3.0
-
Simpleproxy simpleproxy-3.4.tar.gz
http://prdownloads.sourceforge.net/simpleproxy/simpleproxy-3.4.tar.gz? download
Simpleproxy Simpleproxy 3.1
-
Simpleproxy simpleproxy-3.4.tar.gz
http://prdownloads.sourceforge.net/simpleproxy/simpleproxy-3.4.tar.gz? download
Simpleproxy Simpleproxy 3.2
-
Simpleproxy simpleproxy-3.4.tar.gz
http://prdownloads.sourceforge.net/simpleproxy/simpleproxy-3.4.tar.gz? download
References
Simpleproxy Remote Syslog() Format String Vulnerability
References:
References:
- Simpleproxy Home Page (SImpleproxy)
- Version 3.4 released (Simpleproxy)