ValiCert Enterprise Validation Authority forms.exe exitTime Buffer Overflow Vulnerability
BID:3636
Info
ValiCert Enterprise Validation Authority forms.exe exitTime Buffer Overflow Vulnerability
| Bugtraq ID: | 3636 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2001-0949 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 04 2001 12:00AM |
| Updated: | Jul 11 2009 09:06AM |
| Credit: | Discovered and posted to Bugtraq by Information Anarchy 2K01 <[email protected]>. |
| Vulnerable: |
Valicert Enterprise Validation Authority 4.2.1 Valicert Enterprise Validation Authority 4.2 Valicert Enterprise Validation Authority 4.1 Valicert Enterprise Validation Authority 4.0 Valicert Enterprise Validation Authority 3.9 Valicert Enterprise Validation Authority 3.8 Valicert Enterprise Validation Authority 3.7 Valicert Enterprise Validation Authority 3.6 Valicert Enterprise Validation Authority 3.5 Valicert Enterprise Validation Authority 3.4 Valicert Enterprise Validation Authority 3.3 |
| Not Vulnerable: |
Valicert Enterprise Validation Authority 4.2.2 |
Discussion
ValiCert Enterprise Validation Authority forms.exe exitTime Buffer Overflow Vulnerability
ValiCert Enterprise Validation Authority includes an Administration Server, which can be accessed through a web interface. CGI functionality is provided by the script forms.exe. This script is available on port 13333 in the default installation.
One of the services provided configures how the server responds to validation requests. If an unusually long string is passed into this function as the 'exitTime' parameter, a string buffer will be overflowed. This could overwrite the stack, and possibly lead to execution of arbitrary code.
ValiCert Enterprise Validation Authority includes an Administration Server, which can be accessed through a web interface. CGI functionality is provided by the script forms.exe. This script is available on port 13333 in the default installation.
One of the services provided configures how the server responds to validation requests. If an unusually long string is passed into this function as the 'exitTime' parameter, a string buffer will be overflowed. This could overwrite the stack, and possibly lead to execution of arbitrary code.
Exploit / POC
ValiCert Enterprise Validation Authority forms.exe exitTime Buffer Overflow Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
ValiCert Enterprise Validation Authority forms.exe exitTime Buffer Overflow Vulnerability
Solution:
An updated version 4.2.2 has been released which fixes this vulnerability. ValiCert encourages users to contact [email protected] for support information.
Solution:
An updated version 4.2.2 has been released which fixes this vulnerability. ValiCert encourages users to contact [email protected] for support information.
References
ValiCert Enterprise Validation Authority forms.exe exitTime Buffer Overflow Vulnerability
References:
References:
- VA-11-28-2001A (ValiCert)
- ValiCert Homepage (ValiCert)