PT-2000-1593 · Analogx · Analogx Proxy Server
Published
2000-07-25
·
Updated
2008-09-10
·
CVE-2000-0659
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
AnalogX proxy server versions 4.04 and earlier
Description
A buffer overflow issue allows remote attackers to cause a denial of service via a long user ID in a SOCKS4 CONNECT request, specifically in the
username variable. This can lead to service disruption.Recommendations
For AnalogX proxy server versions 4.04 and earlier, consider updating to a newer version to resolve the issue. As a temporary workaround, restrict the length of the
username variable in SOCKS4 CONNECT requests to prevent exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Analogx Proxy Server