PT-2000-1593 · Analogx · Analogx Proxy Server

Publicado

2000-07-25

·

Atualizado

2008-09-10

·

CVE-2000-0659

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions AnalogX proxy server versions 4.04 and earlier
Description A buffer overflow issue allows remote attackers to cause a denial of service via a long user ID in a SOCKS4 CONNECT request, specifically in the username variable. This can lead to service disruption.
Recommendations For AnalogX proxy server versions 4.04 and earlier, consider updating to a newer version to resolve the issue. As a temporary workaround, restrict the length of the username variable in SOCKS4 CONNECT requests to prevent exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2000-0659

Produtos afetados

Analogx Proxy Server