Avaya Multiple IP Phones Multiple Command Injection and Stack Buffer Overflow Vulnerabilities
BID:65842
Info
Avaya Multiple IP Phones Multiple Command Injection and Stack Buffer Overflow Vulnerabilities
| Bugtraq ID: | 65842 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 26 2014 12:00AM |
| Updated: | Mar 04 2014 01:32AM |
| Credit: | Ang Cui of Red Balloon Security |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Avaya Multiple IP Phones Multiple Command Injection and Stack Buffer Overflow Vulnerabilities
Avaya Multiple IP Phones are prone to multiple command-injection and stack-based buffer-overflow vulnerabilities
An attacker can exploit these issues to cause arbitrary changes to memory and execute arbitrary shell commands or code as root.
Avaya Multiple IP Phones are prone to multiple command-injection and stack-based buffer-overflow vulnerabilities
An attacker can exploit these issues to cause arbitrary changes to memory and execute arbitrary shell commands or code as root.
Exploit / POC
Avaya Multiple IP Phones Multiple Command Injection and Stack Buffer Overflow Vulnerabilities
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Avaya Multiple IP Phones Multiple Command Injection and Stack Buffer Overflow Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Avaya Multiple IP Phones Multiple Command Injection and Stack Buffer Overflow Vulnerabilities
References:
References:
- Avaya Homepage (Avaya Inc.)