vendor:
INN
by:
Wojciech Purczynski
7.5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: INN
Affected Version From: 2.2.2002
Affected Version To: 2.2.2002
Patch Exists: NO
Related CWE: N/A
CPE: a:inn:inn:2.2.2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: RedHat 6.2
2000
innd 2.2.2 Remote Buffer Overflow
innd 2.2.2 contains a remotely exploitable buffer overflow in code reached when a cancel request is sent to the 'control' newsgroup, under the condition that the cancel request contains a valid Message-ID but the From/Sender fields differ between the cancel request and the post referenced by the Message-ID. This attack only works against machines running INN with 'verifycancels = true'.
Mitigation:
Disable 'verifycancels' in INN configuration.