GpsDrive Friendsd Remote Format String Vulnerability
BID:15319
Info
GpsDrive Friendsd Remote Format String Vulnerability
| Bugtraq ID: | 15319 |
| Class: | Input Validation Error |
| CVE: |
CVE-2005-3523 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 04 2005 12:00AM |
| Updated: | Nov 04 2005 12:00AM |
| Credit: | Discovered by Kevin Finisterre. |
| Vulnerable: |
S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Professional 9.2 x86_64 S.u.S.E. Linux Professional 9.2 S.u.S.E. Linux Professional 9.1 x86_64 S.u.S.E. Linux Professional 9.1 S.u.S.E. Linux Professional 9.0 x86_64 S.u.S.E. Linux Professional 9.0 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 S.u.S.E. Linux Personal 9.0 x86_64 S.u.S.E. Linux Personal 9.0 GpsDrive GpsDrive 2.0 9 |
| Not Vulnerable: | |
Discussion
GpsDrive Friendsd Remote Format String Vulnerability
GpsDrive is prone to a remote format string vulnerability. A remote attacker may leverage this issue to write to arbitrary process memory, facilitating code execution. This can result in unauthorized remote access.
GpsDrive is prone to a remote format string vulnerability. A remote attacker may leverage this issue to write to arbitrary process memory, facilitating code execution. This can result in unauthorized remote access.
Exploit / POC
GpsDrive Friendsd Remote Format String Vulnerability
The following proof of concept exploits are available:
The following proof of concept exploits are available:
Solution / Fix
GpsDrive Friendsd Remote Format String Vulnerability
Solution:
Debian has released advisory DSA 891-1 to address this issue. Please see the attached advisory for details on obtaining and applying fixes.
This issue has been reportedly address by the vendor in the CVS version. Symantec has not confirmed this fix.
SUSE Linux has released Security Summary Report SUSE-SR:2005:027 to address this, and other issues in various SUSE products. Please see the referenced advisory for further information.
---
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
GpsDrive GpsDrive 2.0 9
Solution:
Debian has released advisory DSA 891-1 to address this issue. Please see the attached advisory for details on obtaining and applying fixes.
This issue has been reportedly address by the vendor in the CVS version. Symantec has not confirmed this fix.
SUSE Linux has released Security Summary Report SUSE-SR:2005:027 to address this, and other issues in various SUSE products. Please see the referenced advisory for further information.
---
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
GpsDrive GpsDrive 2.0 9
-
Debian gpsdrive_2.09-2sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_alpha.deb -
Debian gpsdrive_2.09-2sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_amd64.deb -
Debian gpsdrive_2.09-2sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_arm.deb -
Debian gpsdrive_2.09-2sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_hppa.deb -
Debian gpsdrive_2.09-2sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_i386.deb -
Debian gpsdrive_2.09-2sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_ia64.deb -
Debian gpsdrive_2.09-2sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_m68k.deb -
Debian gpsdrive_2.09-2sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_mips.deb -
Debian gpsdrive_2.09-2sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_mipsel.deb -
Debian gpsdrive_2.09-2sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_powerpc.deb -
Debian gpsdrive_2.09-2sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_s390.deb -
Debian gpsdrive_2.09-2sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/g/gpsdrive/gpsdrive_2.09- 2sarge1_sparc.deb
References
GpsDrive Friendsd Remote Format String Vulnerability
References:
References:
- DMA[2005-1104a] - 'GpsDrive friendsd2 format string vulnerability' (Kevin Finisterre)
- GpsDrive Home Page (GpsDrive)