vendor:
INND/NNRP
by:
milw0rm.com
7,5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: INND/NNRP
Affected Version From: 1.5.1
Affected Version To: 1.5.1
Patch Exists: YES
Related CWE: CVE-2000-0984
CPE: a:inn:inn:1.5.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2000
INND/NNRP remote root overflow
INND/NNRP is vulnerable to a remote root buffer overflow. The vulnerability is caused due to a boundary error within the handling of the 'Path' header. By sending an overly long string, a stack-based buffer overflow occurs, overwriting the return address and allowing arbitrary code execution. The exploit code uses a NOP sled of 4 bytes followed by the shellcode and the return address.
Mitigation:
Upgrade to the latest version of INND/NNRP.