LICQ File Descriptor Remote Denial of Service Vulnerability
BID:28679
Info
LICQ File Descriptor Remote Denial of Service Vulnerability
| Bugtraq ID: | 28679 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2008-1996 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 08 2008 12:00AM |
| Updated: | Apr 13 2015 10:14PM |
| Credit: | Milen Rangelov |
| Vulnerable: |
Redhat Fedora 7 MandrakeSoft Corporate Server 3.0 x86_64 MandrakeSoft Corporate Server 3.0 LICQ LICQ 1.3.5 LICQ LICQ 1.0.4 LICQ LICQ 1.0.3 LICQ LICQ 1.0.2 LICQ LICQ 1.0.1 LICQ LICQ 1.0 LICQ LICQ 0.85 |
| Not Vulnerable: | |
Discussion
LICQ File Descriptor Remote Denial of Service Vulnerability
LICQ is prone to a remote denial-of-service vulnerability because the application fails to handle exceptional conditions.
A remote attacker can exploit this issue to crash the affected application, denying service to legitimate users. The attacker may also be able to execute code, but this has not been confirmed.
LICQ is prone to a remote denial-of-service vulnerability because the application fails to handle exceptional conditions.
A remote attacker can exploit this issue to crash the affected application, denying service to legitimate users. The attacker may also be able to execute code, but this has not been confirmed.
Exploit / POC
LICQ File Descriptor Remote Denial of Service Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
LICQ File Descriptor Remote Denial of Service Vulnerability
Solution:
The vendor has released a fix in the development repository. Please see the references for more information.
Solution:
The vendor has released a fix in the development repository. Please see the references for more information.
References
LICQ File Descriptor Remote Denial of Service Vulnerability
References:
References:
- Changeset 6146 - LICQ (LICQ)
- LICQ Homepage (LICQ )
- licq remote DoS? (Milen Rangelov
) - Re: licq remote DoS? (3APA3A <[email protected]>)
- Re: Re: licq remote DoS? ([email protected])