header-logo
Suggest Exploit
vendor:
BlackICE PC Protection
by:
Unknown
7.5
CVSS
HIGH
Buffer Overrun
Buffer Overrun
CWE
Product Name: BlackICE PC Protection
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: No
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:
Unknown

Local Buffer Overrun in BlackICE PC Protection

BlackICE PC Protection is prone to a local buffer overrun when handling excessive input in certain configuration directives parsed from the firewall.ini file included with the software. When the system is restarted, and the affected software reads the malicious firewall.ini file, both the blackice.exe and blackd.exe executables will crash.

Mitigation:

Unknown
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/10915/info

It is reported that BlackICE PC Protection is prone to a local buffer overrun when handling excessive input in certain configuration directives parsed from the firewall.ini file included with the software.

It is reported that when the system is restarted, and the affected software reads the malicious firewall.ini file both the blackice.exe and blackd.exe executables will crash.

REJECT, 138, default, 1999-07-22 20:26:53, AAAAAAAAAAAAAAAAA.... , 2000,
unknown

(Aprox 1000 A's)