Apache Mod_TCL Remote Format String Vulnerability
BID:20527
Info
Apache Mod_TCL Remote Format String Vulnerability
| Bugtraq ID: | 20527 |
| Class: | Input Validation Error |
| CVE: |
CVE-2006-4154 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 13 2006 12:00AM |
| Updated: | Oct 25 2006 05:08PM |
| Credit: | Sparfell is credited with the discovery of this vulnerability. |
| Vulnerable: |
Gentoo Linux Apache mod_tcl 1.0 |
| Not Vulnerable: |
Apache mod_tcl 1.0.1 |
Discussion
Apache Mod_TCL Remote Format String Vulnerability
Apache mod_tcl is prone to a remote format-string vulnerability because the application fails to properly sanitize user-supplied input before including it in the format-specifier argument of a formatted-printing function.
Successfully exploiting this issue allows remote attackers to execute arbitrary machine code in the context of webserver processes running the affected Apache module. This facilitates the remote compromise of affected computers.
Apache mod_tcl version 1.0 is vulnerable to this issue.
Apache mod_tcl is prone to a remote format-string vulnerability because the application fails to properly sanitize user-supplied input before including it in the format-specifier argument of a formatted-printing function.
Successfully exploiting this issue allows remote attackers to execute arbitrary machine code in the context of webserver processes running the affected Apache module. This facilitates the remote compromise of affected computers.
Apache mod_tcl version 1.0 is vulnerable to this issue.
Exploit / POC
Apache Mod_TCL Remote Format String Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Solution / Fix
Apache Mod_TCL Remote Format String Vulnerability
Solution:
The vendor has released version 1.0.1 of mod_tcl to address this issue.
Please see the referenced advisories for further information.
Apache mod_tcl 1.0
Solution:
The vendor has released version 1.0.1 of mod_tcl to address this issue.
Please see the referenced advisories for further information.
Apache mod_tcl 1.0
-
Apache Software Foundation mod_tcl-1.0.1.tar.gz
http://tcl.apache.org/mod_tcl/downloads/mod_tcl-1.0.1.tar.gz
References
Apache Mod_TCL Remote Format String Vulnerability
References:
References:
- mod_tcl Home Page (Apache Software Foundation)
- iDefense Security Advisory 10.13.06: Apache HTTP Server mod_tcl set_var Format S (iDefense Labs
)