Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Traceroute-nanog Local Buffer Overflow Vulnerability

A vulnerability has been discovered in Traceroute-nanog. It has been reported that Traceroute-nanog contains a buffer overflow condition.

The overflow occurs in the 'get_origin()' function in the 'traceroute.c' file. Due to insufficient bounds checking performed by the whois parser, it may be possible to cause 'get_origin()' to corrupt memory on the system stack.

This vulnerability can be exploited by an attacker to gain root privileges on a target host.







 

Privacy Statement
Copyright 2008, SecurityFocus