Compface '.xbm' File Remote Buffer Overflow Vulnerability
BID:35863
Info
Compface '.xbm' File Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 35863 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-2286 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 17 2009 12:00AM |
| Updated: | Aug 28 2009 05:22PM |
| Credit: | metalhoney |
| Vulnerable: |
Pardus Linux 2009 0 Pardus Linux 2008 0 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 James Ashton compface 1.5.2 Debian Linux 5.0 sparc Debian Linux 5.0 s/390 Debian Linux 5.0 powerpc Debian Linux 5.0 mipsel Debian Linux 5.0 mips Debian Linux 5.0 m68k Debian Linux 5.0 ia-64 Debian Linux 5.0 ia-32 Debian Linux 5.0 hppa Debian Linux 5.0 armel Debian Linux 5.0 arm Debian Linux 5.0 amd64 Debian Linux 5.0 alpha Debian Linux 5.0 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 armel Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: | |
Discussion
Compface '.xbm' File Remote Buffer Overflow Vulnerability
Compface is prone to a remote buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied input.
Attackers may leverage this issue to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
Compface 1.5.2 is vulnerable; other versions may also be affected.
Compface is prone to a remote buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied input.
Attackers may leverage this issue to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
Compface 1.5.2 is vulnerable; other versions may also be affected.
Exploit / POC
Compface '.xbm' File Remote Buffer Overflow Vulnerability
The following proof of concept and exploit are available:
The following proof of concept and exploit are available:
Solution / Fix
Compface '.xbm' File Remote Buffer Overflow Vulnerability
Solution:
Updates are available; please see the references for details.
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Solution:
Updates are available; please see the references for details.
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva compface-1.5.2-5.1mdvmes5.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva lib64compface-devel-1.5.2-5.1mdvmes5.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva lib64compface1-1.5.2-5.1mdvmes5.x86_64.rpm
http://www.mandriva.com/en/download/
MandrakeSoft Enterprise Server 5
-
Mandriva compface-1.5.2-5.1mdvmes5.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva libcompface-devel-1.5.2-5.1mdvmes5.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva libcompface1-1.5.2-5.1mdvmes5.i586.rpm
http://www.mandriva.com/en/download/
References
Compface '.xbm' File Remote Buffer Overflow Vulnerability
References:
References:
- #534973 - compface: bufer overflow in xbm-file - Debian Bug report logs ([email protected])
- compface Homepage (James Ashton)
- CVE id request: compface (Nico Golde)
- Re: CVE id request: compface (Tomas Hoger)