Multiple Microsoft Services for Unix...

- AV AC AU C I A
发布: 2002-10-03
修订: 2025-04-13

Microsoft Services for Unix (SFU) 3.0 Interix SDK is a development environment used to port Unix applications to the Microsoft Windows Platform. Three vulnerabilities have been reported to affect applications built with SFU 3.0 Interix SDK. The issues are related to the Interix implementation of SunRPC. The first vulnerability is an integer overflow in the function that allocates memory for an External Data Representation (XDR) array. This vulnerability may be exploited to cause a denial of service or possibly execute arbitrary code. This vulnerability is BID 5356. The second vulnerability is a denial of service. It is possible for RPC clients to transmit data in fragments of variable size. By sending malformed fragments, it is possible to leave the target server in an unresponsive state. This may be because the server is waiting for a final fragment which the attacker intentionally does not send. When the target server is hung, it will not respond to other clients. The third...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息