Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Pavuk Remote Stack-Based Buffer Overrun Vulnerability

Pavuk is reported prone to a remote buffer overrun vulnerability. It is reported that the issue exists due to a lack of boundary checks performed on third party data, that is received from remote HTTP servers, before the data is copied into a finite stack-based buffer.

Ultimately a remote malicious site may exploit this condition to execute arbitrary code in the context of the user who is running the vulnerable Pavuk software.







 

Privacy Statement
Copyright 2008, SecurityFocus