[3/5] TFTP Server SP Long Filename Buffer Overflow Vulnerability
:Mati Aharoni has discovered a vulnerability in TFTP Server SP, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.The vulnerability is caused due to a boundary error in the handling of filenames and can be exploited to cause a stack-based buffer overflow via a read or write request with an overly long filename.Successful exploitation allows execution of arbitrary code.The vulnerability is confirmed in the Windows version of TFTP Server SP version 1.4. Other versions may also be affected.Solution:Restrict network access to the TFTP service.Provided and/or discovered by:Mati AharoniOriginal Advisory:http://www.offensive-security.com/0day/sourceforge-tftpd.py.txt
Original post by kapil
Posted in Advisories - Exploits |
| [3/5] TFTP Server SP Long Filename Buffer Overflow Vulnerability