GraphOn GO-Global For Windows Remote Buffer Overflow Vulnerability
BID:15285
Info
GraphOn GO-Global For Windows Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 15285 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 02 2005 12:00AM |
| Updated: | Nov 02 2005 12:00AM |
| Credit: | Luigi Auriemma <[email protected]> is credited with the discovery of this vulnerability. |
| Vulnerable: |
GraphOn GO-Global for Windows 3.1 .0.3270 |
| Not Vulnerable: |
GraphOn GO-Global for Windows 3.1 .0.3281 |
Discussion
GraphOn GO-Global For Windows Remote Buffer Overflow Vulnerability
GraphOn GO-Global For Windows is prone to a remote buffer overflow vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied data prior to copying it to an insufficiently sized memory buffer.
An attacker can exploit this vulnerability to overflow a memory buffer, possibly resulting in a denial of service condition. Execution of arbitrary code may also be possible.
The vendor has addressed this issue in version 3.1.0.3281; prior versions are reported vulnerable.
GraphOn GO-Global For Windows is prone to a remote buffer overflow vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied data prior to copying it to an insufficiently sized memory buffer.
An attacker can exploit this vulnerability to overflow a memory buffer, possibly resulting in a denial of service condition. Execution of arbitrary code may also be possible.
The vendor has addressed this issue in version 3.1.0.3281; prior versions are reported vulnerable.
Exploit / POC
GraphOn GO-Global For Windows Remote Buffer Overflow Vulnerability
Proof of concept exploits against both clients and servers are available:
Proof of concept exploits against both clients and servers are available:
Solution / Fix
GraphOn GO-Global For Windows Remote Buffer Overflow Vulnerability
Solution:
The vendor has released version 3.1.0.3281 addressing this issue. Users are advised to contact the vendor for further information.
Solution:
The vendor has released version 3.1.0.3281 addressing this issue. Users are advised to contact the vendor for further information.
References
GraphOn GO-Global For Windows Remote Buffer Overflow Vulnerability
References:
References:
- GO-Global for WIndows Product Page (GraphOn)
- Buffer-overflow in GO-Global for Windows 3.1.0.3270 (Luigi Auriemma
)