|
|
Info |
Last Modified |
| about 1 year ago |
|
|
|
|
|
Description |
A remote overflow exists in ELOG. The application fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted request containing an overly long string to the 'cmd' or 'mode' parameter, a remote attacker can cause the application to crash resulting in a loss of availability.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Denial of Service,
Input Manipulation
Impact:
Loss of Availability
Exploit:
Exploit Available
OSVDB:
Web Related
|
|
Solution |
Currently, there are no known upgrades, patches, or workarounds available to correct this issue.
|
|
Products |
|
ELOG
 |
2.6.0-beta4 |
|
|
|
|
|
|
|
Credit |
- Stefan Klaas - sk
groundzero-security.com - GroundZero Security Research and Software Development
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|