SAP Business One 2005 License Manager 'NT_Naming_Service.exe' Buffer Overflow Vulnerability
BID:35933
Info
SAP Business One 2005 License Manager 'NT_Naming_Service.exe' Buffer Overflow Vulnerability
| Bugtraq ID: | 35933 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 01 2009 12:00AM |
| Updated: | Mar 12 2010 04:02PM |
| Credit: | Mike Arnold |
| Vulnerable: |
SAP Business One 2005 6.80.320 SAP Business One 2005 6.80.123 |
| Not Vulnerable: | |
Discussion
SAP Business One 2005 License Manager 'NT_Naming_Service.exe' Buffer Overflow Vulnerability
SAP Business One 2005 is prone to a buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied input before copying it to an insufficiently sized buffer.
Successfully exploiting this issue will allow an attacker to execute arbitrary code with SYSTEM-level privileges. Failed exploit attempts will result in a denial-of-service condition.
SAP Business One 2005 is prone to a buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied input before copying it to an insufficiently sized buffer.
Successfully exploiting this issue will allow an attacker to execute arbitrary code with SYSTEM-level privileges. Failed exploit attempts will result in a denial-of-service condition.
Exploit / POC
SAP Business One 2005 License Manager 'NT_Naming_Service.exe' Buffer Overflow Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
SAP Business One 2005 License Manager 'NT_Naming_Service.exe' Buffer Overflow Vulnerability
Solution:
Vendor updates are available through SAP note 1372435. Contact the vendor for more information.
Solution:
Vendor updates are available through SAP note 1372435. Contact the vendor for more information.
References
SAP Business One 2005 License Manager 'NT_Naming_Service.exe' Buffer Overflow Vulnerability
References:
References: