39521 : Cisco Security Agent for Microsoft Windows Crafted SMB Packet Remote Overflow
Printer | http://osvdb.org/39521 | Email This | Edit Vulnerability

Views This Week

1

Views All Time

84

Info

Last Modified

6 months ago

Percent Complete

100%

Disclosure

Dec 05, 2007

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Keywords

TCP 139, TCP 445

Description

A remote overflow exists in Cisco Security Agent. The HIPS fails to properly bounds check user input to SMB resulting in a buffer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.

Classification

Location: Remote/Network Access Required
Attack Type: Input Manipulation
Impact: Loss of Integrity
Solution: Patch
Exploit: Exploit Unknown
Disclosure: Vendor Verified
OSVDB: Security Software

Solution

Cisco has released a patch to address this issue. Additionally, it is possible to correct the flaw by implementing the following workaround(s):
-Filters that deny SMB protocol packets using TCP ports 139 and 445 should be deployed

Products

Cisco Systems, Inc.
Watch-list
Cisco Security Agent
Watch-list
5.1.79

References

Credit

  • Cisco Product Security Incident Response Team (PSIRT) - psirtBrand New Doo Doocisco.com - Cisco Systems, Inc.

Blogs

2007/12/05 19:24:00 | Cisco Security Agent for Windows Csatdi.sys Remote Buffer Overflow Vulnerability

from: Fergie's Tech Blog

Via Cisco.com. A buffer overflow vulnerability exists in a system driver used by the Cisco Security Agent for Microsoft Windows ... that address this vulnerability. Common Vulnerabilities and Exposures (CVE) identifier CVE-2007-5580

Comments

No Comments.

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use