vendor:
xtell
by:
Spybreak
7,5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: xtell
Affected Version From: 2.6.1 and earlier
Affected Version To: 2.6.1 and earlier
Patch Exists: YES
Related CWE: N/A
CPE: a:xtell:xtell
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux, BSD and most other Unix based operating systems
2002
xtell Buffer Overflow Vulnerability
Multiple buffer overflow vulnerabilities have been reported in some versions of xtell. If long strings are recieved by the xtell client, stack memory will be overwritten. Exploitation of these vulnerabilities may result in arbitrary code being executed as the xtell daemon. Overflow conditions may be caused if long strings are sent by a malicious DNS server in response to the reverse lookup performed when a message is received, either through the auth string returned by the ident server, or through directly sending an overly long message to the vulnerable user.
Mitigation:
Ensure that the xtell daemon is not running, and that the identd string is not set to a long string.