FileAlyzer Version Information Remote Stack Buffer Overflow Vulnerability
BID:31474
Info
FileAlyzer Version Information Remote Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 31474 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-4396 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 29 2008 12:00AM |
| Updated: | May 07 2015 05:23PM |
| Credit: | Lostmon |
| Vulnerable: |
Safer Networking FileAlyzer 1.6.0.3 |
| Not Vulnerable: | |
Discussion
FileAlyzer Version Information Remote Stack Buffer Overflow Vulnerability
FileAlyzer is prone to a remote stack-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data.
An attacker can exploit this issue to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will result in a denial-of-service condition.
FileAlyzer 1.6.0.3 is vulnerable; other versions may also be affected.
FileAlyzer is prone to a remote stack-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data.
An attacker can exploit this issue to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will result in a denial-of-service condition.
FileAlyzer 1.6.0.3 is vulnerable; other versions may also be affected.
Exploit / POC
FileAlyzer Version Information Remote Stack Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
FileAlyzer Version Information Remote Stack Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
FileAlyzer Version Information Remote Stack Buffer Overflow Vulnerability
References:
References:
- FileAlyzer Homepage (Safer Networking)