CounterPath eyeBeam SIP Header Data Remote Buffer Overflow Vulnerability
BID:16253
Info
CounterPath eyeBeam SIP Header Data Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 16253 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 16 2006 12:00AM |
| Updated: | Sep 21 2006 10:21PM |
| Credit: | ZwelL <[email protected]> discovered this issue. |
| Vulnerable: |
CounterPath eyeBeam 1.1 build 3010n CounterPath eyeBeam |
| Not Vulnerable: |
CounterPath eyeBeam 1.5 CounterPath eyeBeam 1.1 build 3014w |
Discussion
CounterPath eyeBeam SIP Header Data Remote Buffer Overflow Vulnerability
A remote buffer-overflow vulnerability affects CounterPath eyeBeam because the application fails to properly validate the length of user-supplied strings prior to copying them into static process buffers.
An attacker may exploit this issue to crash the affected application. Presumably, remote arbitrary code execution may also be possible. This may facilitate unauthorized access or privilege escalation.
Information regarding specific versions affected is currently unavailable. This BID will be updated as further information is disclosed. Note that the eyeBeam package has been re-branded and redistributed by other vendors.
A remote buffer-overflow vulnerability affects CounterPath eyeBeam because the application fails to properly validate the length of user-supplied strings prior to copying them into static process buffers.
An attacker may exploit this issue to crash the affected application. Presumably, remote arbitrary code execution may also be possible. This may facilitate unauthorized access or privilege escalation.
Information regarding specific versions affected is currently unavailable. This BID will be updated as further information is disclosed. Note that the eyeBeam package has been re-branded and redistributed by other vendors.
Exploit / POC
CounterPath eyeBeam SIP Header Data Remote Buffer Overflow Vulnerability
The following proof-of-concept denial-of-service exploit is available:
The following proof-of-concept denial-of-service exploit is available:
Solution / Fix
CounterPath eyeBeam SIP Header Data Remote Buffer Overflow Vulnerability
Solution:
The vendor has released version 1.1 build 3014w to address this issue. Please see the references for details.
Solution:
The vendor has released version 1.1 build 3014w to address this issue. Please see the references for details.
References
CounterPath eyeBeam SIP Header Data Remote Buffer Overflow Vulnerability
References:
References: