Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
BID:35496
Info
Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 35496 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-1394 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 25 2009 12:00AM |
| Updated: | Dec 11 2009 07:34PM |
| Credit: | Ruben Santamarta working with iDefense VCP |
| Vulnerable: |
Motorola Timbuktu Pro for Windows 8.6.5 Motorola Timbuktu Pro for Windows 8.6.3 .1367 Motorola Timbuktu 8.6.5 |
| Not Vulnerable: |
Motorola Timbuktu Pro for Windows 8.6.7 |
Discussion
Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
Motorola Timbuktu Pro for Windows is prone to a remote stack-based buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Failed exploit attempts will result in denial-of-service conditions.
Versions prior to Timbuktu Pro 8.6.7 for Windows are vulnerable.
Motorola Timbuktu Pro for Windows is prone to a remote stack-based buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Failed exploit attempts will result in denial-of-service conditions.
Versions prior to Timbuktu Pro 8.6.7 for Windows are vulnerable.
Exploit / POC
Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
A Metasploit Framework exploit module is available.
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
A Metasploit Framework exploit module is available.
Solution / Fix
Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Motorola Timbuktu Pro 'PlughNTCommand' Named Pipe Remote Stack Buffer Overflow Vulnerability
References:
References:
- Timbuktu Pro Homepage (Motorola)
- Timbuktu® Pro for Windows Upgrade for Owners of Version 8 (Motorola)
- Timbuktu® Pro Remote Control Software (Motorola)
- iDefense Security Advisory 06.25.09: Motorola Timbuktu Pro PlughNTCommand Stack (iDefense Labs
)