Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

SANE Strings Memory Allocation Denial Of Service Vulnerability

SANE is prone to a memory management vulnerability that may potentially cause a denial of service. This could occur when saned is running as a service, for example, through a super-server such as inetd or xinetd. saned may incorrectly allocate memory when a connection is dropped when string input is expected. This could result in too much memory being allocated or a failure in the malloc operation.

It is not known if an attacker could exploit this issue to corrupt memory with attacker-supplied values, though this could make it theoretically possible to execute arbitrary code.







 

Privacy Statement
Copyright 2008, SecurityFocus