[NEWS] Remote Buffer Overflow in Webalizer (DNS Resolve)
From: support@securiteam.comDate: 04/16/02
- Previous message: support@securiteam.com: "[EXPL] /usr/bin/mail OpenBSD Local Root Compromise (Escaping Tilde, Exploit)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: support@securiteam.com To: list@securiteam.com Date: Tue, 16 Apr 2002 10:42:52 +0200 (CEST)
The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com
- - promotion
When was the last time you checked your server's security?
How about a monthly report?
http://www.AutomatedScanning.com - Know that you're safe.
- - - - - - - - -
Remote Buffer Overflow in Webalizer (DNS Resolve)
------------------------------------------------------------------------
SUMMARY
The <http://www.mrunix.net/webalizer/> Webalizer is a fast, free web
server log file analysis program. It produces highly detailed, easily
configurable usage reports in HTML format, for viewing with a standard web
browser. A security vulnerability in the product allows attackers to cause
the program to crash causing it to execute arbitrary code.
DETAILS
Vulnerable systems:
Webalizer version 2.01-09
Webalizer version 2.01-06
The Webalizer has the ability to perform reverse DNS lookups. This ability
is disabled by default, but if enabled, an attacker with control over his
DNS service, has the ability to gain remote root access to a machine, due
to a buffer overflow in the reverse resolving code.
(NOTE: Webalizer version 2.01-06 is part of Red Hat Linux 7.2
distribution, enabled by default and run daily by the cron daemon.)
ADDITIONAL INFORMATION
The information has been provided by <mailto:spybreak@host.sk> Spybreak.
========================================
This bulletin is sent to members of the SecuriTeam mailing list.
To unsubscribe from the list, send mail with an empty subject line and body to: list-unsubscribe@securiteam.com
In order to subscribe to the mailing list, simply forward this email to: list-subscribe@securiteam.com
====================
====================
DISCLAIMER:
The information in this bulletin is provided "AS IS" without warranty of any kind.
In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages.
- Previous message: support@securiteam.com: "[EXPL] /usr/bin/mail OpenBSD Local Root Compromise (Escaping Tilde, Exploit)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|