Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

SANE SANE_NET_INIT Unauthorized Access Vulnerability

It has been reported that the saned daemon supplied with sane-backends is vulnerable to an access validation error. The issue presents itself as a remote attacker attempts to access the vulnerable server. The saned daemon does not identify the remote host before the initial communication therefore allowing a remote attacker to gain some degree of unauthorized access to the service despite access controls that might otherwise restrict the attacker.







 

Privacy Statement
Copyright 2008, SecurityFocus