SolarWinds TFTP Server Large UDP Packet Vulnerability
BID:6043
Info
SolarWinds TFTP Server Large UDP Packet Vulnerability
| Bugtraq ID: | 6043 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2002-1542 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 24 2002 12:00AM |
| Updated: | Jul 11 2009 06:06PM |
| Credit: | Vulnerability discovery credited to D4rkGr3y <[email protected]>. |
| Vulnerable: |
SolarWinds TFTP Server Standard Edition 5.0.55 |
| Not Vulnerable: | |
Discussion
SolarWinds TFTP Server Large UDP Packet Vulnerability
A problem in SolarWinds TFTP Server may result in a denial of service, and may have other ramifications. SolarWinds TFTP Server is distributed for the Microsoft Windows platform.
Under some circumstances, it may be possible to crash a vulnerable TFTP server. By sending a UDP packet to the server that is 8193 or more bytes, the server becomes unstable. It has been reported that doing this can consistently reproduce a crash of the server, requiring a manual restart to resume normal operation.
A problem in SolarWinds TFTP Server may result in a denial of service, and may have other ramifications. SolarWinds TFTP Server is distributed for the Microsoft Windows platform.
Under some circumstances, it may be possible to crash a vulnerable TFTP server. By sending a UDP packet to the server that is 8193 or more bytes, the server becomes unstable. It has been reported that doing this can consistently reproduce a crash of the server, requiring a manual restart to resume normal operation.
Exploit / POC
SolarWinds TFTP Server Large UDP Packet Vulnerability
Exploit contributed by D4rkGr3y <[email protected]>:
Exploit contributed by D4rkGr3y <[email protected]>:
Solution / Fix
SolarWinds TFTP Server Large UDP Packet Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.