YaSoft Switch Off swnet.dll Remote Buffer Overflow Vulnerability
BID:9340
Info
YaSoft Switch Off swnet.dll Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 9340 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 02 2004 12:00AM |
| Updated: | Jan 02 2004 12:00AM |
| Credit: | Discovery credited to Peter Winter-Smith. |
| Vulnerable: |
Y@Soft Switch Off 2.3 |
| Not Vulnerable: | |
Discussion
YaSoft Switch Off swnet.dll Remote Buffer Overflow Vulnerability
A vulnerability has been identified in the YaSoft Switch Off software package when handling message requests. The buffer overrun condition exists in the 'swnet.dll' module of the software due to insufficient bounds checking performed by the affected component. The overflow may be caused by sending an excessively long 'message' parameter to the application. This may make it possible for a remote user to execute arbitrary code through a vulnerable server.
A vulnerability has been identified in the YaSoft Switch Off software package when handling message requests. The buffer overrun condition exists in the 'swnet.dll' module of the software due to insufficient bounds checking performed by the affected component. The overflow may be caused by sending an excessively long 'message' parameter to the application. This may make it possible for a remote user to execute arbitrary code through a vulnerable server.
Exploit / POC
YaSoft Switch Off swnet.dll Remote Buffer Overflow Vulnerability
The following proof-of-concept has been made available:
http://www.example.com:8000/action.htm?action=SendMsg&message=('a'x256)('XXXX')
The following exploit code has been provided:
The following proof-of-concept has been made available:
http://www.example.com:8000/action.htm?action=SendMsg&message=('a'x256)('XXXX')
The following exploit code has been provided:
Solution / Fix
YaSoft Switch Off swnet.dll Remote Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
YaSoft Switch Off swnet.dll Remote Buffer Overflow Vulnerability
References:
References:
- Switch Off Product Page (Y@Soft Compact Solutions)
- Switch Off Multiple Vulnerabilities ("Peter Winter-Smith"
)