No-IP Dynamic Update Client 'i' Parameter Remote Stack Overflow Vulnerability
BID:59827
Info
No-IP Dynamic Update Client 'i' Parameter Remote Stack Overflow Vulnerability
| Bugtraq ID: | 59827 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 11 2013 12:00AM |
| Updated: | May 11 2013 12:00AM |
| Credit: | Alberto Ortega |
| Vulnerable: |
No-IP Dynamic Update Client 2.1.9 |
| Not Vulnerable: | |
Discussion
No-IP Dynamic Update Client 'i' Parameter Remote Stack Overflow Vulnerability
No-IP Dynamic Update Client is prone to a remote stack-overflow vulnerability because it fails to properly bounds-check user-supplied input.
An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed attacks may cause a denial-of-service condition.
No-IP Dynamic Update Client 2.1.9 is vulnerable; other versions may also be affected.
No-IP Dynamic Update Client is prone to a remote stack-overflow vulnerability because it fails to properly bounds-check user-supplied input.
An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed attacks may cause a denial-of-service condition.
No-IP Dynamic Update Client 2.1.9 is vulnerable; other versions may also be affected.
References
No-IP Dynamic Update Client 'i' Parameter Remote Stack Overflow Vulnerability
References:
References:
- No-IP Home Page (No-IP)