iSCSI Enterprise Target Multiple Implementations iSNS Message Stack Buffer Overflow Vulnerability
BID:41327
Info
iSCSI Enterprise Target Multiple Implementations iSNS Message Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 41327 |
| Class: | Input Validation Error |
| CVE: |
CVE-2010-2221 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 02 2010 12:00AM |
| Updated: | Jul 12 2010 10:07PM |
| Credit: | TELUS Security Labs Vulnerability Research Team |
| Vulnerable: |
tgt Project Linux SCSI target framework (tgt) 0.9.5 tgt Project Linux SCSI target framework 1.0.5 tgt Project Linux SCSI target framework 0 Red Hat Cluster-Storage Server 5 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 iSCSI Enterprise Target iSCSI Enterprise Target 0.4.19 iSCSI Enterprise Target iSCSI Enterprise Target 0.4.16 iSCSI Enterprise Target iSCSI Enterprise Target 0.4.15 iSCSI Enterprise Target iSCSI Enterprise Target 1.4.0.21 Generic SCSI Target Subsystem for Linux Generic SCSI Target Subsystem for Linux 1.0.1.1 Generic SCSI Target Subsystem for Linux Generic SCSI Target Subsystem for Linux 0 |
| Not Vulnerable: | |
Discussion
iSCSI Enterprise Target Multiple Implementations iSNS Message Stack Buffer Overflow Vulnerability
Multiple implementations of iSCSI Enterprise Target are prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary-checks on user-supplied data.
An attacker may exploit this issue to execute arbitrary code in the context of the vulnerable application. Failed exploit attempts will result in a denial-of-service condition.
The following products are affected:
iSCSI Enterprise Target 1.4.20.1 and prior
Generic SCSI Target Subsystem for Linux 1.0.1.1 and prior
Linux SCSI target framework 1.0 and prior
Multiple implementations of iSCSI Enterprise Target are prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary-checks on user-supplied data.
An attacker may exploit this issue to execute arbitrary code in the context of the vulnerable application. Failed exploit attempts will result in a denial-of-service condition.
The following products are affected:
iSCSI Enterprise Target 1.4.20.1 and prior
Generic SCSI Target Subsystem for Linux 1.0.1.1 and prior
Linux SCSI target framework 1.0 and prior
Exploit / POC
iSCSI Enterprise Target Multiple Implementations iSNS Message Stack Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
iSCSI Enterprise Target Multiple Implementations iSNS Message Stack Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva dkms-iscsitarget-0.4.16-4.1mdvmes5.1.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva iscsitarget-0.4.16-4.1mdvmes5.1.x86_64.rpm
http://www.mandriva.com/en/download/
MandrakeSoft Enterprise Server 5
-
Mandriva iscsitarget-0.4.16-4.1mdvmes5.1.i586.rpm
http://www.mandriva.com/en/download/
References
iSCSI Enterprise Target Multiple Implementations iSNS Message Stack Buffer Overflow Vulnerability
References:
References:
- [Iscsitarget-devel] [patch] fix iSNS bounds checking (SourceForge)
- Generic SCSI Target Subsystem for Linux Homepage (Generic SCSI Target Subsystem for Linux)
- iSCSI Enterprise Target Homepage (iSCSI Enterprise Target)
- iSCSI target Multiple Implementations iSNS Stack Buffer Overflow (Vulnerability Research Team, TELUS Security Labs)
- Linux SCSI target framework Homepage (tgt Project)