TCPflow Format String Vulnerability
BID:8366
Info
TCPflow Format String Vulnerability
| Bugtraq ID: | 8366 |
| Class: | Input Validation Error |
| CVE: |
CVE-2003-0671 |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 07 2003 12:00AM |
| Updated: | Jul 11 2009 10:56PM |
| Credit: | Reported by Dave G. <[email protected]> of @stake, Inc. |
| Vulnerable: |
Sustainable Softworks IPNetSentryX Sustainable Softworks IPNetMonitorX Jeremy Elson tcpflow 0.20 Jeremy Elson tcpflow 0.12 Jeremy Elson tcpflow 0.11 Jeremy Elson tcpflow 0.10 |
| Not Vulnerable: |
Jeremy Elson tcpflow 0.21 |
Discussion
TCPflow Format String Vulnerability
It has been reported that tcpflow is vulnerable to a format string vulnerability that may be exploitable if IPNetMonitorX or IPNetSentryX utilities are installed. A local attacker may harness helper utilities to pass malicious format specifiers to the vulnerable application. Ultimately code execution with elevated privileges may be possible.
It has been reported that tcpflow is vulnerable to a format string vulnerability that may be exploitable if IPNetMonitorX or IPNetSentryX utilities are installed. A local attacker may harness helper utilities to pass malicious format specifiers to the vulnerable application. Ultimately code execution with elevated privileges may be possible.
Exploit / POC
TCPflow Format String Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
TCPflow Format String Vulnerability
Solution:
The following fixes are available:
Jeremy Elson tcpflow 0.10
Jeremy Elson tcpflow 0.11
Jeremy Elson tcpflow 0.12
Jeremy Elson tcpflow 0.20
Solution:
The following fixes are available:
Jeremy Elson tcpflow 0.10
-
Jeremy Elson tcpflow-0.21.tar.gz
ftp://ftp.circlemud.org/pub/jelson/tcpflow/tcpflow-0.21.tar.gz
Jeremy Elson tcpflow 0.11
-
Jeremy Elson tcpflow-0.21.tar.gz
ftp://ftp.circlemud.org/pub/jelson/tcpflow/tcpflow-0.21.tar.gz
Jeremy Elson tcpflow 0.12
-
Jeremy Elson tcpflow-0.21.tar.gz
ftp://ftp.circlemud.org/pub/jelson/tcpflow/tcpflow-0.21.tar.gz
Jeremy Elson tcpflow 0.20
-
Jeremy Elson tcpflow-0.21.tar.gz
ftp://ftp.circlemud.org/pub/jelson/tcpflow/tcpflow-0.21.tar.gz
References
TCPflow Format String Vulnerability
References:
References:
- tcpflow Homepage (Jeremy Elson)
- Sustworks Unauthorized Network Monitoring and tcpflow format string attack (@stake Advisories
)