SX Design sipd Remote Format String Vulnerability
BID:9236
Info
SX Design sipd Remote Format String Vulnerability
| Bugtraq ID: | 9236 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 16 2003 12:00AM |
| Updated: | Dec 16 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to STORM. |
| Vulnerable: |
SX Design sipd 0.1.4 SX Design sipd 0.1.2 |
| Not Vulnerable: |
SX Design sipd 0.1.5 |
Discussion
SX Design sipd Remote Format String Vulnerability
sipd has been reported prone to a format string vulnerability that may be triggered remotely. It has been reported that sip URI arguments passed to the affected server are not sufficiently handled. An attacker may place format specifiers in the URI and they will be handled literally, potentially allowing the attacker to read from and write to arbitrary memory.
sipd has been reported prone to a format string vulnerability that may be triggered remotely. It has been reported that sip URI arguments passed to the affected server are not sufficiently handled. An attacker may place format specifiers in the URI and they will be handled literally, potentially allowing the attacker to read from and write to arbitrary memory.
Exploit / POC
SX Design sipd Remote Format String Vulnerability
The following proof of concept exploit has been supplied by STORM:
The following proof of concept exploit has been supplied by STORM:
Solution / Fix
SX Design sipd Remote Format String Vulnerability
Solution:
The vendor has released an upgrade to address this issue:
SX Design sipd 0.1.2
SX Design sipd 0.1.4
Solution:
The vendor has released an upgrade to address this issue:
SX Design sipd 0.1.2
-
SX Design sipd-0.1.5.tar.bz2
http://www.sxdesign.com/index.php?page=developer&submnu=sipd
SX Design sipd 0.1.4
-
SX Design sipd-0.1.5.tar.bz2
http://www.sxdesign.com/index.php?page=developer&submnu=sipd