libguac Remote Buffer Overflow Vulnerability
BID:55497
Info
libguac Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 55497 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2012-4415 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 11 2012 12:00AM |
| Updated: | Apr 13 2015 08:58PM |
| Credit: | Michael Jumper |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
libguac Remote Buffer Overflow Vulnerability
libguac is prone to a remote buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in denial-of-service conditions.
libguac is prone to a remote buffer-overflow vulnerability.
Attackers can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts will result in denial-of-service conditions.
Exploit / POC
libguac Remote Buffer Overflow Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
libguac Remote Buffer Overflow Vulnerability
Solution:
A vendor patch is available. Please see the references for more information.
Solution:
A vendor patch is available. Please see the references for more information.
References
libguac Remote Buffer Overflow Vulnerability
References:
References:
- Changeset 7dcefa7 in libguac (Michael Jumper)
- libguac HomePage (Guacamole)
- CVE-2012-4415: guacamole local root vulnerability (Timo Juhani Lindfors )