|
|||
Rule General Information |
---|
Release Date: | 2012-02-21 | |
Rule Name: | EXPLOIT Dnsmasq TFTP Service Remote Heap buffer overflow | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | A heap based buffer overflow vulnerability has been reported in Dnsmasq. The vulnerability is due to improper bounds checking when handling TFTP Read requests. A remote attacker can exploit this vulnerability by sending a specially crafted RRQ packet to the target server. | |
Impact: | Remote code execution | |
Affected OS: | Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others | |
Reference: | CVE-2009-2957 |
|
Solutions |
---|
Update vendor's patch. |