Cybertrion Systems

[2/5] Avaya Products e2fsprogs Integer Overflow Vulnerabilities

January 25th, 2008 by
[2/5] Avaya Products e2fsprogs Integer Overflow Vulnerabilities

:Avaya has acknowledged some vulnerabilities in multiple Avaya products, which potentially can be exploited by malicious people to compromise an application using the library.For more information:SA27889The following products and versions are affected:* Avaya Communication Manager (CM 3.x, 4.x and 5.0)* Avaya Intuity AUDIX LX (IALX 2.0)* Avaya EMMC (all versions)* Avaya Messaging Storage Server (MSS 3.x)* Avaya Message Networking (MN 3.1)* Avaya SIP Enablement Services (all versions)* Avaya AES (3.1.4 and 4.1)Solution:The vendor recommends that local and network access to the affected systems be restricted until an update is available.Original Advisory:http://support.avaya.com/elmodocs2/security/ASA-2008-040.htmOther References:SA27889:http://secunia.com/advisories/27889/

Original post by Pankaj

[2/5] Avaya Products e2fsprogs Integer Overflow Vulnerabilities

Related Articles:
  • [2/5] Avaya Products file Integer Underflow Vulnerability
  • [2/5] Avaya Products file “file_printf()” Integer Underflow Vulnerability
  • [3/5] Avaya Products Perl Regular Expressions Unicode Data Buffer Overflow
  • [2/5] Avaya Products GDB “DWARF” Buffer Overflow Vulnerabilities
  • [2/5] Avaya Products httpd Multiple Vulnerabilities


  • Posted in Advisories - Exploits | | [2/5] Avaya Products e2fsprogs Integer Overflow Vulnerabilities

    << [1/5] ImageShack Toolbar FileUploader Class ActiveX Control “BuildSlideShow()” Insecure Method | [2/5] Fedora update for pulseaudio >>