Double-Take Denial of Service and Information Disclosure Vulnerabilities
BID:27951
Info
Double-Take Denial of Service and Information Disclosure Vulnerabilities
| Bugtraq ID: | 27951 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2008-0978 CVE-2008-0977 CVE-2008-0976 CVE-2008-0974 CVE-2008-0973 CVE-2008-0975 CVE-2008-0979 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 22 2008 12:00AM |
| Updated: | Jul 05 2016 10:00PM |
| Credit: | Luigi Auriemma is credited with the discovery of these vulnerabilities. |
| Vulnerable: |
Double-Take Software Double-Take 5.0.0.2865 Double-Take Software Double-Take 4.5 |
| Not Vulnerable: | |
Discussion
Double-Take Denial of Service and Information Disclosure Vulnerabilities
Double-Take is prone to multiple remote multiple denial-of-service and information-disclosure vulnerabilities.
An attacker can exploit these issues to obtain sensitive information or crash the affected application, denying service to legitimate users.
These issues affect Double-Take 5.0.0.2865 and 4.5; other versions may also be affected.
Double-Take is prone to multiple remote multiple denial-of-service and information-disclosure vulnerabilities.
An attacker can exploit these issues to obtain sensitive information or crash the affected application, denying service to legitimate users.
These issues affect Double-Take 5.0.0.2865 and 4.5; other versions may also be affected.
Exploit / POC
Double-Take Denial of Service and Information Disclosure Vulnerabilities
An attacker can exploit these issues by using readily available network utilities.
An attacker can exploit these issues by using readily available network utilities.
Solution / Fix
Double-Take Denial of Service and Information Disclosure Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for these issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].