(Vendor Issues Fix) eSignal Buffer Overflow Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1009703 |
|
SecurityTracker URL: http://securitytracker.com/id/1009703
|
|
CVE Reference:
GENERIC-MAP-NOMATCH
(Links to External Site)
|
Date: Apr 7 2004
|
Impact:
Execution of arbitrary code via network, User access via network
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): 7.6, 7.5, possibly earlier versions
|
Description:
A buffer overflow vulnerability was reported in eSignal. A remote user can execute arbitrary code on the target system.
VizibleSoft reported that a remote user can connect to the target service on TCP port 80 and send a parameter string of approximately 1040 characters to trigger a buffer overflow in 'Specs.dll'. A remote user can modify the EIP register and execute arbitrary code, the report said.
Some demonstration exploit code is available at:
http://viziblesoft.com/insect/sploits/vz-eSignal76.pl
The vendor has reportedly been notified.
|
Impact:
A remote user can execute arbitrary code on the target system.
|
Solution:
The vendor has issued a fixed version (7.6 release 3, Build 636a), available at:
http://www.esignal.com/download/default.asp
|
Vendor URL: www.esignal.com/ (Links to External Site)
|
Cause:
Boundary error
|
Underlying OS:
Windows (Any)
|
|
Message History:
This archive entry is a follow-up to the message listed below.
|
Source Message Contents
|
Date: 6 Apr 2004 23:20:39 -0000
Subject: Re: eSignal v7 remote buffer overflow
|
In-Reply-To: <1701098125.20040325175344@freemail.hu>
This issue has been corrected and a new version is now available on the eSignal Download site (ver 7.6 release 3, Build 636a):
http://www.esignal.com/download/default.asp
For all related inquiries, please contact eSignal Technical Support.
http://www.esignalcentral.com/support/contact/default.asp
Thank you.
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-===========
VizibleSoft Security Advisory #2004/01 25th Mar 2004
http://viziblesoft.com/insect/advisories/vz012004-esignal7.txt
insect@viziblesoft.com
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-===========
Product: eSignal 7.6, 7.5 (maybe earlier)
http://www.esignal.com
Systems: Windows (all versions)
Problem: Stack-based buffer overflow
Severity: Remote code execution
|
|