Release DateDec 29, 2009 |
Severityhigh |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt to exploit a remote code-execution vulnerability in gAlan.The vulnerability is caused by an error when handling malformed gAlan files (.galan). It can be exploited via a crafted gAlan file, leading to remote code execution. |
Affected ProductsgAlan 0.2.1 |
Recommended ActionsCurrently we are not aware of any officially supplied patch for this issue. |
Coverage IPS
VCM |
Reference/shttp://www.exploit-db.com/exploits/10339 |