Epic Userhost_Cmd_Returned Buffer Overflow Vulnerability
BID:7091
Info
Epic Userhost_Cmd_Returned Buffer Overflow Vulnerability
| Bugtraq ID: | 7091 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 14 2003 12:00AM |
| Updated: | Mar 14 2003 12:00AM |
| Credit: | Discovery credited to Timo Sirainen <[email protected]>. |
| Vulnerable: |
Epic Epic4 1.1.7 .20020907 Epic Epic4 1.0.1 Epic Epic 3.0 .004 |
| Not Vulnerable: | |
Discussion
Epic Userhost_Cmd_Returned Buffer Overflow Vulnerability
It has been reported that Epic does not properly handle some types of server replies. This particular problem occurs in the userhost returned by the server. Because of this, an attacker may be able to gain access to a vulnerable client system with the privileges of the Epic user.
It has been reported that Epic does not properly handle some types of server replies. This particular problem occurs in the userhost returned by the server. Because of this, an attacker may be able to gain access to a vulnerable client system with the privileges of the Epic user.
Exploit / POC
Epic Userhost_Cmd_Returned Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Epic Userhost_Cmd_Returned Buffer Overflow Vulnerability
Solution:
It has been reported that this vulnerability will be fixed in the 1.1.x series of Epic. This has not yet been confirmed by the vendor.
Debian has issued advisories DSA-287-1 and DSA-298-1 for EPIC and EPIC4 respectively. Information about obtaining and applying the fixes is contained in the advisories. Users of the apt-get system are advised to issue the following commands to upgrade systems:
apt-get update
apt-get upgrade
Fixes available:
Epic Epic4 1.0.1
Solution:
It has been reported that this vulnerability will be fixed in the 1.1.x series of Epic. This has not yet been confirmed by the vendor.
Debian has issued advisories DSA-287-1 and DSA-298-1 for EPIC and EPIC4 respectively. Information about obtaining and applying the fixes is contained in the advisories. Users of the apt-get system are advised to issue the following commands to upgrade systems:
apt-get update
apt-get upgrade
Fixes available:
Epic Epic4 1.0.1
-
Slackware epic4-1.0.1-i386-3.tgz
ftp://ftp.slackware.com/pub/slackware/slackware-8.1/patches/packages/e pic4-1.0.1-i386-3.tgz -
Slackware epic4-1.0.1-i386-3.tgz
ftp://ftp.slackware.com/pub/slackware/slackware-9.0/patches/packages/e pic4-1.0.1-i386-3.tgz