Byte Fusion BFTelnet Long Username DoS Vulnerability
BID:771
Info
Byte Fusion BFTelnet Long Username DoS Vulnerability
| Bugtraq ID: | 771 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Nov 03 1999 12:00AM |
| Updated: | Nov 03 1999 12:00AM |
| Credit: | Posted to Bugtraq by Ussr Labs <[email protected]> on November 3, 1999. |
| Vulnerable: |
Byte Fusion BFTelnet 1.1 |
| Not Vulnerable: | |
Discussion
Byte Fusion BFTelnet Long Username DoS Vulnerability
BFTelnet, a telnet server for Windows NT by Byte Fusion, will crash if a user name of 3090 or more characters is supplied.
BFTelnet, a telnet server for Windows NT by Byte Fusion, will crash if a user name of 3090 or more characters is supplied.
Exploit / POC
Byte Fusion BFTelnet Long Username DoS Vulnerability
telnet victim.com
Login: [3090 charcter string]
telnet victim.com
Login: [3090 charcter string]
Solution / Fix
Byte Fusion BFTelnet Long Username DoS Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Byte Fusion BFTelnet Long Username DoS Vulnerability
References:
References:
- BFTelnet Home Page (Byte Fusion Corporation)