Castle Rock Computing SNMPc Community String Stack Based Buffer Overflow Vulnerability
BID:28990
Info
Castle Rock Computing SNMPc Community String Stack Based Buffer Overflow Vulnerability
| Bugtraq ID: | 28990 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-2214 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 30 2008 12:00AM |
| Updated: | May 07 2015 05:29PM |
| Credit: | Wade Alcorn and John Heasman of NGSSoftware |
| Vulnerable: |
Castlerock SNMPc 7.0.19 Castlerock SNMPc 7.0.18 Castlerock SNMPc 6.0.8 Castlerock SNMPc 6.0.5 Castlerock SNMPc 6.0 Castlerock SNMPc 5.1.9 Castlerock SNMPc 5.1 Castlerock SNMPc 7.1 |
| Not Vulnerable: |
Castlerock SNMPc 7.1.1 |
Discussion
Castle Rock Computing SNMPc Community String Stack Based Buffer Overflow Vulnerability
Castle Rock Computing SNMPc is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
Attackers can leverage this issue to execute arbitrary code in the context of the application, which typically runs with LocalSystem privileges. Successful exploits will compromise affected computers. Failed attacks will likely cause denial-of-service conditions.
Versions prior to SNMPc 7.1.1 are vulnerable.
Castle Rock Computing SNMPc is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
Attackers can leverage this issue to execute arbitrary code in the context of the application, which typically runs with LocalSystem privileges. Successful exploits will compromise affected computers. Failed attacks will likely cause denial-of-service conditions.
Versions prior to SNMPc 7.1.1 are vulnerable.
Exploit / POC
Castle Rock Computing SNMPc Community String Stack Based Buffer Overflow Vulnerability
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following proof of concept is available:
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following proof of concept is available:
Solution / Fix
Castle Rock Computing SNMPc Community String Stack Based Buffer Overflow Vulnerability
Solution:
The vendor released SNMPc 7.1.1 to address this issue. Please contact the vendor for information on how to obtain and apply the new release.
Solution:
The vendor released SNMPc 7.1.1 to address this issue. Please contact the vendor for information on how to obtain and apply the new release.
References
Castle Rock Computing SNMPc Community String Stack Based Buffer Overflow Vulnerability
References:
References:
- Castle Rock Computing SNMPc Product Page (Castle Rock Computing)
- Critical Vulnerability in SNMPc (NGSSoftware Insight Security Research
) - NGS00526: Critical Vulnerability in SNMPc (NGSSoftware Insight Security Research)