| OSVDB ID | Disclosure Date | Title |
|
36098
Description:
A remote overflow exists in McAfee Common Management Agent. The CMA agent is vulnerable to an integer underflow resulting in a stack corruption. With a specially crafted UDP packet, an attacker can cause remote code execution resulting in a loss of integrity.
|
2007-07-10
|
McAfee Multiple Products ePolicy Orchestrator Crafted UDP Packet Remote Overflow
|
|
36099
Description:
A remote overflow exists in McAfee Common Management Agent. The CMA agent fails to check for proper boundary limits on receiving ping packets resulting in a stack-based overflow. With a specially crafted request, an attacker can cause arbitrary code execution or trigger a denial of service resulting in a loss of integrity and/or availability.
|
2007-07-10
|
McAfee Multiple Products ePolicy Orchestrator Crafted Ping Packet Remote Overflow
|
|
36100
Description:
A remote overflow exists in McAfee Common Management Agent. The CMA agent fails to check proper bounds on certain packets resulting in a heap-based overflow. With a specially crafted request, an attacker can cause arbitrary code execution or trigger a denial of service resulting in a loss of confidentiality and/or availability.
|
2007-07-10
|
McAfee Multiple Products ePolicy Orchestrator Crafted Packet Remote Overflow
|
|
36101
Description:
A remote overflow exists in McAfee Common Management Agent (CMA). The CMA agent is vulnerable to an integer overflow. With a specially crafted request, an attacker can cause arbitrary code execution or trigger a denial of service resulting in a loss of integrity and/or availability.
|
2007-07-10
|
McAfee Multiple Products ePolicy Orchestrator CMA Framework Service Remote Overflow
|
|
32094
Description:
A remote overflow exists in Snort. The DCE/RPC Pre-Processor fails to check if traffic is part of a valid TCP session, and multiple "Write AndX" requests can be chained in the same TCP segment resulting in a stack overflow. With a specially crafted SMB packet, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2007-02-17
|
Snort DCE/RPC Pre-Processor Packet Reassembly Remote Overflow
|
|
31888
Description:
A local overflow exists in Malware Protection Engine. mpengine.dll fails to validate PDF files resulting in an integer overflow. With a specially crafted file, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2007-02-14
|
Microsoft Malware Protection Engine PDF File Parsing Remote Code Execution
|
|
20034
Description:
A remote overflow exists in Snort. The Back Orifice Pre-Processor fails to validate UDP packets resulting in a stack overflow. With a specially crafted UDP packet, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2005-10-18
|
Snort Back Orifice Pre-Processor UDP Packet Remote Overflow
|
|
18605
Description:
A remote overflow exists in Windows. The Plug and Play Service fails to validate the length of a message resulting in a buffer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2005-08-09
|
Microsoft Windows Plug-and-Play Service Remote Overflow
|
|
18257
Description:
A remote overflow exists in Clam AntiVirus. Clam AntiVirus fails to perform adequate boundary check in libclamav/tnef.c, resulting in a heap overflow. With a specially crafted request, an attacker can gain privileges equal to those of the Clam AntiVirus process, possibly allowing for a remote system compromise.
|
2005-07-24
|
Clam AntiVirus TNEF File Processing Multiple Overflows
|
|
18258
Description:
A remote overflow exists in Clam AntiVirus. Clam AntiVirus fails to perform adequate boundary check in libclamav/chmunpack.c, resulting in a heap overflow. With a specially crafted request, an attacker can gain privileges equal to those of the Clam AntiVirus process, possibly allowing for a remote system compromise.
|
2005-07-24
|
Clam AntiVirus CHM File Processing Filename Overflow
|
|
18259
Description:
A remote overflow exists in Clam AntiVirus. Clam AntiVirus fails to perform adequate boundary check in libclamav/fsg.c, resulting in a heap overflow. With a specially crafted request, an attacker can gain privileges equal to those of the Clam AntiVirus process, possibly allowing for a remote system compromise.
|
2005-07-24
|
Clam AntiVirus FSG File Processing Overflow
|
|
15463
Description:
A remote overflow exists in Windows. The IP stack drivers fail to validate IP network packets resulting in a buffer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2005-04-12
|
Microsoft Windows IP Validation Failure Remote Code Execution
|
|
8290
Description:
A remote overflow exists in Checkpoint VPN-1/Firewall-1 software. Checkpoint VPN-1/FireWall-1 software fails to properly santize ASN.1 decoding during the initial VPN tunnel encryption setup over ISAKMP resulting in a heap overflow. With a specially crafted request, an attacker can compromise the server resulting in a loss of confidentiality and integrity.
|
2004-07-28
|
Check Point VPN-1 ASN.1 Decoding Heap Overflow
|
|
5250
Description:
A remote overflow exists in the Microsoft Windows SSL library. The library fails to verify a field length during PCT 1.0 protocol negotiation. Any application which negotiates SSL using the Windows API may be vulnerable to this attack. With a specially crafted request, an attacker can execute arbitrary code with LocalSystem privileges, resulting in a loss of integrity.
|
2004-04-13
|
Microsoft Windows SSL Library Private Communications Transport (PCT) Remote Overflow
|