漏洞信息详情
Traceroute-Nanog整数溢出内存腐败漏洞
- CNNVD编号:CNNVD-200308-039
- 危害等级: 超危
- CVE编号:
CVE-2003-0453
- 漏洞类型:
缓冲区溢出
- 发布时间:
2003-08-07
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
ehud_gavron - 漏洞来源:
.’);”>Discovery of this … -
漏洞简介
traceroute-nanog 6.1.1版本存在漏洞。本地用户借助某些\”nprobes\”和\”max_ttl\”参数覆盖未认证的内存且可能执行任意代码,在分配内存时这些参数可导致整数溢出,该漏洞引发缓冲区溢出。
漏洞公告
Debian has released advisory DSA 348-1 to address this issue. For fix information, see referenced advisory.
NANOG Traceroute 6.1.1
-
Debian traceroute-nanog_6.1.1-1.3_alpha.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_alpha.deb -
Debian traceroute-nanog_6.1.1-1.3_arm.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_arm.deb -
Debian traceroute-nanog_6.1.1-1.3_hppa.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_hppa.deb -
Debian traceroute-nanog_6.1.1-1.3_i386.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_i386.deb -
Debian traceroute-nanog_6.1.1-1.3_ia64.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_ia64.deb -
Debian traceroute-nanog_6.1.1-1.3_m68k.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_m68k.deb -
Debian traceroute-nanog_6.1.1-1.3_mips.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_mips.deb -
Debian traceroute-nanog_6.1.1-1.3_mipsel.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_mipsel.deb -
Debian traceroute-nanog_6.1.1-1.3_powerpc.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_powerpc.deb -
Debian traceroute-nanog_6.1.1-1.3_s390.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_s390.deb -
Debian traceroute-nanog_6.1.1-1.3_sparc.debDebian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/t/traceroute-nanog/tracer
oute-nanog_6.1.1-1.3_sparc.deb
参考网址
来源: DEBIAN
名称: DSA-348
链接:http://www.debian.org/security/2003/dsa-348
来源: BUGTRAQ
名称: 20030620 BAZARR FAREWELL
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=105613905425563&w=2
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END