WebFS Long Pathname Buffer Overrun Vulnerability
BID:8726
Info
WebFS Long Pathname Buffer Overrun Vulnerability
| Bugtraq ID: | 8726 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2003-0833 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 29 2003 12:00AM |
| Updated: | Jul 11 2009 11:56PM |
| Credit: | The discovery of this vulnerability has been credited to Jens Steube. |
| Vulnerable: |
WebFS WebFS 1.21 WebFS WebFS 1.20 WebFS WebFS 1.19 WebFS WebFS 1.18 WebFS WebFS 1.17 |
| Not Vulnerable: | |
Discussion
WebFS Long Pathname Buffer Overrun Vulnerability
It has been discovered that WebFS is prone to a buffer overrun vulnerability when handling path names of excessive length. As a result, an attacker may be capable of triggering the condition and overwriting sensitive memory with malicious data. This could ultimately allow for the execution of arbitrary code with the privileges of the WebFS HTTP server.
It should be noted that for this condition to occur, an attacker must have the ability to create directories on the affected system.
It has been discovered that WebFS is prone to a buffer overrun vulnerability when handling path names of excessive length. As a result, an attacker may be capable of triggering the condition and overwriting sensitive memory with malicious data. This could ultimately allow for the execution of arbitrary code with the privileges of the WebFS HTTP server.
It should be noted that for this condition to occur, an attacker must have the ability to create directories on the affected system.
Exploit / POC
WebFS Long Pathname Buffer Overrun Vulnerability
Exploit contributed by yan feng.
Exploit contributed by yan feng.
Solution / Fix
WebFS Long Pathname Buffer Overrun Vulnerability
Solution:
Debian has released a security advisory (DSA-392-1) and fixes which address this and other issues in WebFS. Users are advised to upgrade their installations as soon as possible.
WebFS WebFS 1.17
Solution:
Debian has released a security advisory (DSA-392-1) and fixes which address this and other issues in WebFS. Users are advised to upgrade their installations as soon as possible.
WebFS WebFS 1.17
-
Debian webfs_1.17.2_alpha.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_alph a.deb -
Debian webfs_1.17.2_arm.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_arm. deb -
Debian webfs_1.17.2_hppa.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_hppa .deb -
Debian webfs_1.17.2_i386.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_i386 .deb -
Debian webfs_1.17.2_ia64.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_ia64 .deb -
Debian webfs_1.17.2_m68k.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_m68k .deb -
Debian webfs_1.17.2_mips.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_mips .deb -
Debian webfs_1.17.2_mipsel.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_mips el.deb -
Debian webfs_1.17.2_powerpc.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_powe rpc.deb -
Debian webfs_1.17.2_s390.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_s390 .deb -
Debian webfs_1.17.2_sparc.deb
http://security.debian.org/pool/updates/main/w/webfs/webfs_1.17.2_spar c.deb
References
WebFS Long Pathname Buffer Overrun Vulnerability
References:
References:
- WebFS (WebFS)
- webfsd fun. opensource is god .lol windows (yan feng
)