Iris GET Denial of Service Vulnerability
BID:2278
Info
Iris GET Denial of Service Vulnerability
| Bugtraq ID: | 2278 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2001-0184 |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 21 2001 12:00AM |
| Updated: | Mar 19 2015 09:34AM |
| Credit: | Reported to bugtraq by [email protected] on Sun, 21 Jan 2001 |
| Vulnerable: |
Eeye IRIS 1.0.1 |
| Not Vulnerable: | |
Discussion
Iris GET Denial of Service Vulnerability
A maliciously-formed packet sent to Iris by a remote attacker, upon opening in the program for analysis by a user, will cause Iris to terminate.
The crash is caused by an inability of Iris to handle packets with malformed values in its headers.
A maliciously-formed packet sent to Iris by a remote attacker, upon opening in the program for analysis by a user, will cause Iris to terminate.
The crash is caused by an inability of Iris to handle packets with malformed values in its headers.