PT-2000-1593 · Analogx · Analogx Proxy Server

Published

2000-07-25

·

Updated

2008-09-10

·

CVE-2000-0659

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions AnalogX proxy server versions 4.04 and earlier
Description A buffer overflow issue allows remote attackers to cause a denial of service via a long user ID in a SOCKS4 CONNECT request, specifically in the username variable. This can lead to service disruption.
Recommendations For AnalogX proxy server versions 4.04 and earlier, consider updating to a newer version to resolve the issue. As a temporary workaround, restrict the length of the username variable in SOCKS4 CONNECT requests to prevent exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-0659

Affected Products

Analogx Proxy Server