RSLinx EDS File Remote Stack Buffer Overflow Vulnerability
BID:38171
Info
RSLinx EDS File Remote Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 38171 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 10 2010 12:00AM |
| Updated: | Feb 10 2010 12:00AM |
| Credit: | Jeremy Brown |
| Vulnerable: |
Rockwall Automation RSLinx 2.31 |
| Not Vulnerable: | |
Discussion
RSLinx EDS File Remote Stack Buffer Overflow Vulnerability
RSLinx is prone to a remote stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
Successful exploits may allow remote attackers to execute arbitrary code in the context of the application. Failed exploit attempts will likely cause denial-of-service conditions.
RSLinx Lite 2.31.00 is vulnerable; other versions may also be affected.
RSLinx is prone to a remote stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input.
Successful exploits may allow remote attackers to execute arbitrary code in the context of the application. Failed exploit attempts will likely cause denial-of-service conditions.
RSLinx Lite 2.31.00 is vulnerable; other versions may also be affected.
Exploit / POC
RSLinx EDS File Remote Stack Buffer Overflow Vulnerability
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
RSLinx EDS File Remote Stack Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
RSLinx EDS File Remote Stack Buffer Overflow Vulnerability
References:
References:
- Reverse Engineering File Formats (Jeremy Brown)
- RSLinx Homepage (Rockwell Software)