PT-2013-1193 · Stunnel+3 · Stunnel+3

Mateusz Kocielski

+1

·

Publicado

2013-03-08

·

Atualizado

2024-06-15

·

CVE-2013-1762

CVSS v2.0

6.6

Média

VetorAV:N/AC:H/Au:N/C:P/I:P/A:C
Name of the Vulnerable Software and Affected Versions stunnel versions 4.21 through 4.54 stunnel version 4.29
Description The issue arises when the CONNECT protocol negotiation and NTLM authentication are enabled in stunnel, leading to incorrect integer conversion. This allows remote proxy servers to execute arbitrary code via a crafted request that triggers a buffer overflow. Exploitation of this issue can lead to a violation of confidentiality, integrity, and availability of protected information and can be carried out remotely.
Recommendations For stunnel versions 4.21 through 4.54, update to a version later than 4.54 to resolve the issue. For stunnel version 4.29, update to a version later than 4.29 to resolve the issue. As a temporary workaround, consider disabling NTLM authentication and CONNECT protocol negotiation until a patch is available. Restrict access to the stunnel service to minimize the risk of exploitation.

Correção

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-07603
BDU:2015-07604
BDU:2015-08992
BDU:2015-08993
BDU:2015-09731
CESA-2013_0714
CVE-2013-1762
DSA-2664-1
OPENSUSE-SU-2024:10289-1
RHSA-2013:0714
RHSA-2013_0714
SUSE-SU-2013_0709-1

Produtos afetados

Centos
Red Hat
Suse
Stunnel