FastTrack P2P Supernode Packet Handler Buffer Overflow Vulnerability
BID:7680
Info
FastTrack P2P Supernode Packet Handler Buffer Overflow Vulnerability
| Bugtraq ID: | 7680 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2003-0397 |
| Remote: | Yes |
| Local: | No |
| Published: | May 26 2003 12:00AM |
| Updated: | Jul 11 2009 10:06PM |
| Credit: | Discovery of this vulnerability has been credited to random nut <[email protected]>. |
| Vulnerable: |
Music City Networks Morpheus 1.9 Music City Networks Morpheus 1.3.3 Music City Networks Morpheus 1.3 KaZaA KaZaA Media Desktop 2.0.2 KaZaA KaZaA Media Desktop 2.0 KaZaA KaZaA Media Desktop 1.6.1 KaZaA KaZaA Media Desktop 1.3.2 KaZaA KaZaA Media Desktop 1.3.1 KaZaA KaZaA Media Desktop 1.3 iMesh iMesh 3.1 iMesh iMesh 1.0 2 Grokster Grokster 1.3.3 Grokster Grokster 1.3 |
| Not Vulnerable: | |
Discussion
FastTrack P2P Supernode Packet Handler Buffer Overflow Vulnerability
FastTrack P2P Supernode Packet Handler has been reported prone to a buffer overflow vulnerability. The issue presents itself in the FastTrack Supernode packet handler. The handler does not perform sufficient bounds checking on supernode entries received before they are copied into a reserved buffer in internal memory.
An attacker may exploit this vulnerability to trigger a denial of service condition or ultimately have arbitrary attacker supplied code executed. Code execution would occur in the context of the user running an application that incorporates the vulnerable FastTrack P2P Packet Handler.
It should be noted that this vulnerability has been tested on KaZaA version 2.0.2. Other versions of KaZaA and similar file-sharing clients based on FastTrack P2P technology may also be affected.
FastTrack P2P Supernode Packet Handler has been reported prone to a buffer overflow vulnerability. The issue presents itself in the FastTrack Supernode packet handler. The handler does not perform sufficient bounds checking on supernode entries received before they are copied into a reserved buffer in internal memory.
An attacker may exploit this vulnerability to trigger a denial of service condition or ultimately have arbitrary attacker supplied code executed. Code execution would occur in the context of the user running an application that incorporates the vulnerable FastTrack P2P Packet Handler.
It should be noted that this vulnerability has been tested on KaZaA version 2.0.2. Other versions of KaZaA and similar file-sharing clients based on FastTrack P2P technology may also be affected.
Exploit / POC
FastTrack P2P Supernode Packet Handler Buffer Overflow Vulnerability
A working exploit has been reported to exist, but has not been publicly released.
A working exploit has been reported to exist, but has not been publicly released.
Solution / Fix
FastTrack P2P Supernode Packet Handler Buffer Overflow Vulnerability
Solution:
The pending release of a patch to address this issue in KaZaA has been reported.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
The pending release of a patch to address this issue in KaZaA has been reported.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
FastTrack P2P Supernode Packet Handler Buffer Overflow Vulnerability
References:
References:
- Grokster Homepage (Grokster)
- KaZaA Homepage (KaZaA)
- Morpheus Homepage (Music City Networks)
- Vendor Homepage (iMesh.com)