|
SANE Strings Memory Allocation Denial Of Service Vulnerability
SANE is prone to a memory management vulnerability that may potentially cause a denial of service. This could occur when saned is running as a service, for example, through a super-server such as inetd or xinetd. saned may incorrectly allocate memory when a connection is dropped when string input is expected. This could result in too much memory being allocated or a failure in the malloc operation. It is not known if an attacker could exploit this issue to corrupt memory with attacker-supplied values, though this could make it theoretically possible to execute arbitrary code. |
|
|
Privacy Statement |