ClarkConnect Linux clarkconnectd Remote Information Disclosure Vulnerability
BID:6934
Info
ClarkConnect Linux clarkconnectd Remote Information Disclosure Vulnerability
| Bugtraq ID: | 6934 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 25 2003 12:00AM |
| Updated: | Feb 25 2003 12:00AM |
| Credit: | Discovery of this vulnerability credited to Knud Erik Højgaard. |
| Vulnerable: |
ClarkConnect ClarkConnect Linux 1.2 |
| Not Vulnerable: | |
Discussion
ClarkConnect Linux clarkconnectd Remote Information Disclosure Vulnerability
An information disclosure vulnerability has been reported for ClarkConnect Linux that may result in the clarkconnectd service divulging potentially sensitive information to remote attackers.
An attacker can exploit this vulnerability by connecting to the remote system and sending special character codes. This will cause the service to send various system information to a remote party.
An information disclosure vulnerability has been reported for ClarkConnect Linux that may result in the clarkconnectd service divulging potentially sensitive information to remote attackers.
An attacker can exploit this vulnerability by connecting to the remote system and sending special character codes. This will cause the service to send various system information to a remote party.
Solution / Fix
ClarkConnect Linux clarkconnectd Remote Information Disclosure Vulnerability
Solution:
Fixes available:
ClarkConnect ClarkConnect Linux 1.2
Solution:
Fixes available:
ClarkConnect ClarkConnect Linux 1.2
-
ClarkConnect cc-daemon-1.2-2.i386.rpm
http://download.clarkconnect.org/clarkconnect-1.2/updates/cc-daemon-1. 2-2.i386.rpm