This application requires Javascript for optimal performance.

Fujitsu.SystemcastWizard.PXE.Buffer.Overflow

Release Date

Feb 26, 2009

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against a buffer-overflow vulnerability in Fujitsu SystemcastWizard Lite.

The vulnerability is caused by an error when the vulnerable software handles a crafted UDP packet. It allows a remote attacker to execute arbitrary code via sending a crafted UDP packet.

Affected Products

Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9

Recommended Actions

Apply the most recent upgrades or patches from the vendor:

http://www.fujitsu.com/global/services/computing/server/primequest/products/os/windows-server-2008-2.html

http://primeserver.fujitsu.com/primequest/products/os/windows2008.html (Japanese)

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-0270

Reference/s

http://www.frsirt.com/english/advisories/2009/0176 (FrSIRT)
http://www.securityfocus.com/bid/33342 (BugTraq)

Reference: VID-17260