Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0767 (File Server, Print Server)

BugsAlert Home > CVE-2008-0767 (File Server, Print Server)
 
 

ExtremeZ-IP.exe in ExtremeZ-IP File and Print Server 5.1.2x15 and earlier does not verify that a certain "number of URLs" field is consistent with the packet length, which allows remote attackers to cause a denial of service (daemon crash) via a large integer in this field in a packet to the Service Location Protocol (SLP) service on UDP port 427, triggering an out-of-bounds read.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0767

Learn more about CVE-2008-0767 (File Server, Print Server)
 
Tags: cve-2008-0767 file server print server

Related Items

      FrSIRT - Arcadem Pro "articlecat" Parameter SQL Injection Vulnerability

      aflog SQL Injection and Script Insertion Vulnerabilities

      CVE-2008-4712 (lnblog)

      FrSIRT - Cisco Products SNMPv3 Authentication Packets Vulnerabilities

      TROJ_OBFUSCA.ATL

      FrSIRT - Gentoo Security Update Fixes Pan Buffer Overflow Vulnerability

      Quick Poll "id" SQL Injection Vulnerability

 

Pixel