MNOGoSearch Search.CGI UL Buffer Overflow Vulnerability
BID:7865
Info
MNOGoSearch Search.CGI UL Buffer Overflow Vulnerability
| Bugtraq ID: | 7865 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2003-0436 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 10 2003 12:00AM |
| Updated: | Jul 11 2009 10:06PM |
| Credit: | Discovery of this vulnerability has been credited to pokleyzz <[email protected]>. |
| Vulnerable: |
mnoGoSearch mnoGoSearch 3.1.20 |
| Not Vulnerable: | |
Discussion
MNOGoSearch Search.CGI UL Buffer Overflow Vulnerability
mnoGoSearch 'search.cgi' has been reported prone to a buffer overflow vulnerability.
The issue is a result of a lack of sufficient bounds checking performed on user-supplied URI parameters that are passed to the 'search.cgi' application.
It may be possible for an attacker to exploit this vulnerability and have arbitrary code executed in the context of the web-server process.
mnoGoSearch 'search.cgi' has been reported prone to a buffer overflow vulnerability.
The issue is a result of a lack of sufficient bounds checking performed on user-supplied URI parameters that are passed to the 'search.cgi' application.
It may be possible for an attacker to exploit this vulnerability and have arbitrary code executed in the context of the web-server process.
Exploit / POC
MNOGoSearch Search.CGI UL Buffer Overflow Vulnerability
The following exploits are available:
The following exploits are available:
Solution / Fix
MNOGoSearch Search.CGI UL Buffer Overflow Vulnerability
Solution:
The vendor has addressed this issue in the current version of this software and a fix is available at the cvs repository for this product:
Conectiva has released a security advisory (CLA-2003:711) and fixes to address this issue. Details regarding applying fixes can be found in the referenced advisory, fixes are linked below.
mnoGoSearch mnoGoSearch 3.1.20
Solution:
The vendor has addressed this issue in the current version of this software and a fix is available at the cvs repository for this product:
Conectiva has released a security advisory (CLA-2003:711) and fixes to address this issue. Details regarding applying fixes can be found in the referenced advisory, fixes are linked below.
mnoGoSearch mnoGoSearch 3.1.20
-
Conectiva mnogosearch-3.1.21-12434U90_2cl.i386.rpm
Conectiva Linux 9
ftp://atualizacoes.conectiva.com.br/9/RPMS/mnogosearch-3.1.21-12434U90 _2cl.i386.rpm -
Conectiva mnogosearch-3.1.21-12434U90_2cl.src.rpm
Conectiva Linux 9
ftp://atualizacoes.conectiva.com.br/9/SRPMS/mnogosearch-3.1.21-12434U9 0_2cl.src.rpm -
Conectiva mnogosearch-devel-3.1.21-12434U90_2cl.i386.rpm
Conectiva Linux 9
ftp://atualizacoes.conectiva.com.br/9/RPMS/mnogosearch-devel-3.1.21-12 434U90_2cl.i386.rpm -
Conectiva mnogosearch-devel-static-3.1.21-12434U90_2cl.i386.rpm
Conectiva Linux 9
ftp://atualizacoes.conectiva.com.br/9/RPMS/mnogosearch-devel-static-3. 1.21-12434U90_2cl.i386.rpm -
mnoGoSearch mnoGoSearch CVS
http://www.mnogosearch.org/download.html