PT-2008-1951 · Borland · Starteam Multicast Service+1

Publicado

2008-04-06

·

Atualizado

2017-08-08

·

CVE-2008-0311

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Borland CaliberRM 2006 version 6.4
Description The issue is related to a stack-based buffer overflow in the PGMWebHandler::parse request function within the StarTeam Multicast Service component. This allows remote attackers to execute arbitrary code by sending a large HTTP request.
Recommendations For version 6.4, consider restricting access to the StarTeam Multicast Service component until a fix is available. As a temporary workaround, limiting the size of HTTP requests to the PGMWebHandler could help minimize the risk of exploitation.

Exploit

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0311

Produtos afetados

Borland Caliberrm
Starteam Multicast Service