RULE(RULE ID:1905237)

Rule General Information
Release Date: 2012-02-21
Rule Name: EXPLOIT Dnsmasq TFTP Service Remote Heap buffer overflow
Severity:
CVE ID:
Rule Protection Details
Description: A heap based buffer overflow vulnerability has been reported in Dnsmasq. The vulnerability is due to improper bounds checking when handling TFTP Read requests. A remote attacker can exploit this vulnerability by sending a specially crafted RRQ packet to the target server.
Impact: Remote code execution
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: CVE-2009-2957
Solutions
Update vendor's patch.