PT-2005-4533 · Ipupdate · Ipupdate
Published
2005-11-23
·
Updated
2011-03-08
·
CVE-2005-3780
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
IPUpdate version 1.1
Description
The issue is related to multiple buffer overflows that could allow attackers to execute arbitrary code. This can occur via the
memmcat function in the memm module or through certain TSIG format records.Recommendations
For IPUpdate version 1.1, update to a version that fixes the buffer overflow issues in the
memm module and handles TSIG format records securely.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ipupdate