RULE(RULE ID:336688)

Rule General Information
Release Date: 2022-06-22
Rule Name: Nero MediaHome Denial of Service Vulnerability(CVE-2012-5876)
Severity:
CVE ID:
Rule Protection Details
Description: Multiple off-by-one errors in NMMediaServerService.dll in Nero MediaHome 4.5.8.0 and earlier allow remote attackers to cause a denial of service (crash) via a long string in the (1) request line or (2) HTTP Referer header to TCP port 54444, which triggers a heap-based buffer overflow.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Windows, Linux, Others
Reference: ExploitDB:24022
http://archives.neohapsis.com/archives/bugtraq/2013-01/0037.html
SecurityFocusBID:57253
https://exchange.xforce.ibmcloud.com/vulnerabilities/81103
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
http://www.nero.com/