Monday 18 February 2008

CISCO's "Security" agent driver's unfortunate buffer overflow...

http://www.cisco.com/en/US/products/products_applied_mitigation_bulletin09186a008090a445.html

"Cisco Security Agent contains a vulnerability when it processes a specially crafted Server Message Block (SMB) packet. This vulnerability can be exploited remotely without authentication and without end-user interaction. Successful exploitation of this vulnerability may allow arbitrary code execution, cause the affected device to crash, or result in a denial of service (DoS) condition. The attack vector for exploitation is through SMB packets using TCP port 139 and TCP port 445."

No comments: