OpenSER 1.1.0中的parse_config中parse_expression函数存在缓冲区溢出,攻击者可以通过长的str参数来制造未知的影响。
来源: BUGTRAQ
名称: 20061226 [OpenPKG-SA-2006.042] OpenPKG Security Advisory (openser)
链接:http://www.securityfocus.com/archive/1/archive/1/455300/100/0/threaded
来源: OPENPKG
名称: OpenPKG-SA-2006
链接:http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.042.html
来源: XF
名称: openser-parseconfig-bo(31035)
链接:http://xforce.iss.net/xforce/xfdb/31035
来源: BID
名称: 21706
链接:http://www.securityfocus.com/bid/21706
来源: BUGTRAQ
名称: 20061220 OpenSER 1.1.0 parse_config buffer overflow vulnerability
链接:http://www.securityfocus.com/archive/1/archive/1/455097/100/0/threaded
来源: VUPEN
名称: ADV-2006-5167
链接:http://www.frsirt.com/english/advisories/2006/5167
来源: SREASON
名称: 2083
链接:http://securityreason.com/securityalert/2083
暂无