|
|
Info |
Last Modified |
| about 1 year ago |
|
|
|
|
|
Description |
proxytunnel contains a flaw that may allow a malicious proxy server to perform format string attacks. The issue is due to improper use of syslog() by the messages.c message() function. It is possible that the flaw may allow remote arbitrary code execution resulting in a loss of integrity.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Exploit:
Exploit Available
Disclosure:
OSVDB Verified
|
|
Technical |
The issue can be exploited if proxytunnel is running in daemon mode (i.e. logging invalid proxy calls to syslog). Due to the fairly small buffer size (char buf[1024]) exploitation of the vulnerability may be fairly difficult.
|
|
Solution |
Upgrade to version 1.2.3 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.
|
|
Products |
|
proxytunnel
 |
1.2.2 |
1.2.1 |
1.2.0 |
1.1.x |
|
|
|
|
|
|
Credit |
- Florian Schilhabel - florian.schilhabel
gmx.net -
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|