Bip `bip_on_event()` NULL Pointer Dereference Remote Denial Of Service Vulnerability
BID:42995
Info
Bip `bip_on_event()` NULL Pointer Dereference Remote Denial Of Service Vulnerability
| Bugtraq ID: | 42995 |
| Class: | Unknown |
| CVE: |
CVE-2010-3071 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 06 2010 12:00AM |
| Updated: | Apr 13 2015 09:54PM |
| Credit: | Uli Schlachter |
| Vulnerable: |
Gentoo Linux Bip Bip 0.8.5 |
| Not Vulnerable: | |
Discussion
Bip `bip_on_event()` NULL Pointer Dereference Remote Denial Of Service Vulnerability
Bip is prone to a remote denial-of-service vulnerability due to a NULL-pointer dereference condition.
An attacker may exploit this issue to crash the application, resulting in a denial-of-service condition.
Bip 0.8.5 is vulnerable; other versions may also be affected.
Bip is prone to a remote denial-of-service vulnerability due to a NULL-pointer dereference condition.
An attacker may exploit this issue to crash the application, resulting in a denial-of-service condition.
Bip 0.8.5 is vulnerable; other versions may also be affected.
Exploit / POC
Bip `bip_on_event()` NULL Pointer Dereference Remote Denial Of Service Vulnerability
An attacker can use readily available network utilities to exploit this issue.
An attacker can use readily available network utilities to exploit this issue.
Solution / Fix
Bip `bip_on_event()` NULL Pointer Dereference Remote Denial Of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Bip `bip_on_event()` NULL Pointer Dereference Remote Denial Of Service Vulnerability
References:
References:
- Debian Bug report logs #595409 bip can be crashed remotely by unauthenticated us (Uli Schlachter)
- Vendor Homepage (Bip)