SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
BID:18906
CVE-2006-3524 |Info
SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
| Bugtraq ID: | 18906 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 10 2006 12:00AM |
| Updated: | Jul 31 2006 10:21PM |
| Credit: | Michael Thumann discovered this issue. |
| Vulnerable: |
SIPfoundry sipXtapi 0 AOL AIM Triton 1.0.4 |
| Not Vulnerable: | |
Discussion
SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
The sipXtapi product is reported to be prone to a remote buffer-overflow vulnerability. This issue presents itself when the application handles a specially crafted 'CSeq' value.
A successful attack may lead to unauthorized remote access in the context of a user running an affected application that uses the vulnerable library.
Reports indicate that sipXtapi versions that were released prior to March 24, 2006 are vulnerable to this issue. Certain PingTel products and versions of AOL Triton may be affected because they employ the vulnerable library.
The sipXtapi product is reported to be prone to a remote buffer-overflow vulnerability. This issue presents itself when the application handles a specially crafted 'CSeq' value.
A successful attack may lead to unauthorized remote access in the context of a user running an affected application that uses the vulnerable library.
Reports indicate that sipXtapi versions that were released prior to March 24, 2006 are vulnerable to this issue. Certain PingTel products and versions of AOL Triton may be affected because they employ the vulnerable library.
Exploit / POC
SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
A proof of concept and an exploit are available:
A proof of concept and an exploit are available:
Solution / Fix
SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
Solution:
Reportedly, this issue was addressed by the vendor. Symantec was unable to confirm this information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Reportedly, this issue was addressed by the vendor. Symantec was unable to confirm this information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
References:
References: