SniffIt 'sn_cfgfile.c' Multiple Stack Buffer Overflow Vulnerabilities
BID:71318
CVE-2014-5439 |Info
SniffIt 'sn_cfgfile.c' Multiple Stack Buffer Overflow Vulnerabilities
| Bugtraq ID: | 71318 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2014-5439 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 26 2014 12:00AM |
| Updated: | Nov 26 2014 12:00AM |
| Credit: | Ismael Ripoll and Hector Marco |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
SniffIt 'sn_cfgfile.c' Multiple Stack Buffer Overflow Vulnerabilities
SniffIt is prone to multiple stack-based buffer-overflow vulnerabilities because the application fails to perform adequate boundary checks on user-supplied input.
Attackers may leverage these issues to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
SniffIt is prone to multiple stack-based buffer-overflow vulnerabilities because the application fails to perform adequate boundary checks on user-supplied input.
Attackers may leverage these issues to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
Exploit / POC
SniffIt 'sn_cfgfile.c' Multiple Stack Buffer Overflow Vulnerabilities
The researcher who discovered these issues has created an exploit. Please see the references for more information.
The researcher who discovered these issues has created an exploit. Please see the references for more information.
Solution / Fix
SniffIt 'sn_cfgfile.c' Multiple Stack Buffer Overflow Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
SniffIt 'sn_cfgfile.c' Multiple Stack Buffer Overflow Vulnerabilities
References:
References: