PT-2006-6777 · Philserv · Tftpd32

Art Manion

+1

·

Publicado

2006-11-28

·

Atualizado

2018-10-17

·

CVE-2006-6141

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Tftpd32 version 3.01
Description A buffer overflow issue exists, allowing remote attackers to cause a denial of service. This occurs when a long GET or PUT request is not properly handled, specifically when the request is displayed in the title of the gauge window.
Recommendations For Tftpd32 version 3.01, consider restricting the length of GET or PUT requests to prevent the buffer overflow issue until a patch is available. As a temporary workaround, avoid displaying long requests in the title of the gauge window to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-6141

Produtos afetados

Tftpd32