Maelstrom Server Argument Buffer Overflow Vulnerability
BID:7630
Info
Maelstrom Server Argument Buffer Overflow Vulnerability
| Bugtraq ID: | 7630 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2003-0325 |
| Remote: | No |
| Local: | Yes |
| Published: | May 20 2003 12:00AM |
| Updated: | Jul 11 2009 10:06PM |
| Credit: | Discovery of this vulnerability has been credited to Luca Ercoli <[email protected]>. |
| Vulnerable: |
Sam Lantinga Maelstrom 3.0.6 Sam Lantinga Maelstrom 3.0.5 Sam Lantinga Maelstrom 3.0.3 |
| Not Vulnerable: | |
Discussion
Maelstrom Server Argument Buffer Overflow Vulnerability
Maelstrom for Linux has been reported prone to a buffer overflow vulnerability.
The issue is reportedly due to a lack of sufficient bounds checking performed on user-supplied data before it is copied into an internal memory space. It may be possible for a local attacker to exploit this condition and have malicious arbitrary code executed in the context of the Maelstrom application. Typically setGID games.
Maelstrom for Linux has been reported prone to a buffer overflow vulnerability.
The issue is reportedly due to a lack of sufficient bounds checking performed on user-supplied data before it is copied into an internal memory space. It may be possible for a local attacker to exploit this condition and have malicious arbitrary code executed in the context of the Maelstrom application. Typically setGID games.
Exploit / POC
Maelstrom Server Argument Buffer Overflow Vulnerability
The following proof of concept exploits have been submitted by CMN <[email protected]> and kokanin <[email protected]> respectively:
The following proof of concept exploits have been submitted by CMN <[email protected]> and kokanin <[email protected]> respectively:
Solution / Fix
Maelstrom Server Argument Buffer Overflow Vulnerability
Solution:
Andrew Church has supplied an unsupported unofficial patch to address this issue for maelstrom version 3.0.6.
Gentoo has released an advisory for this issue. Gentoo can apply the app-games/maelstrom upgrade to maelstrom-3.0.6 with the following commands:
emerge sync
emerge maelstrom
emerge clean
Sam Lantinga Maelstrom 3.0.6
Solution:
Andrew Church has supplied an unsupported unofficial patch to address this issue for maelstrom version 3.0.6.
Gentoo has released an advisory for this issue. Gentoo can apply the app-games/maelstrom upgrade to maelstrom-3.0.6 with the following commands:
emerge sync
emerge maelstrom
emerge clean
Sam Lantinga Maelstrom 3.0.6
-
Andrew Church maelstrom-3.06.patch
http://downloads.securityfocus.com/vulnerabilities/patches/maelstrom-3 .06.patch
References
Maelstrom Server Argument Buffer Overflow Vulnerability
References:
References:
- Maelstrom Homepage (Sam Lantinga)
- Maelstrom Buffer Overflow (Luca Ercoli
) - Maelstrom bugfix (was Maelstrom Local Buffer Overflow Exploit, ([email protected] (Andrew Church))
- Maelstrom Local Buffer Overflow Exploit, FreeBSD 4.8 edition (kokanin
)