A vulnerability has been discovered in Logsurfer. Reportedly it is possible to trigger an off-by-one buffer overflow condition when a malformed log entry is processed. This overflow will result in corruption of an address located in the heap area of memory, and result in the termination of the logsurfer process. Although not confirmed, it may also be possible for an attacker to cause arbitrary code to be executed.
A vulnerability has been discovered in Logsurfer. Reportedly it is possible to trigger an off-by-one buffer overflow condition when a malformed log entry is processed. This overflow will result in corruption of an address located in the heap area of memory, and result in the termination of the logsurfer process. Although not confirmed, it may also be possible for an attacker to cause arbitrary code to be executed.