|
|
Family: Gain root remotely --> Category: infos
LCDproc buffer overflow Vulnerability Scan
Vulnerability Scan Summary LCDproc version check
Detailed Explanation for this Vulnerability Test
Synopsis :
A buffer overflow in the remote LCDproc server may allow a possible hacker
to execute arbitrary code on the remote host.
Description :
The remote LCDproc service is vulnerable to a buffer overflow vulnerability
when processing commands received from the network due to a lack of bound
checks.
A possible hacker may exploit this flaw to execute arbitrary code on the remote host,
with the rights of the LCDproc process (usually, nobody).
Solution :
Upgrade to LCDproc 0.4.1 or newer
Threat Level:
High / CVSS Base Score : 7
(AV:R/AC:L/Au:NR/C:P/A:P/I:P/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|