This application requires Javascript for optimal performance.

ViRobot.Linux.Server.Buffer.Overflow

Release Date

Dec 25, 2006

Severity

high

Impact

System Compromise

Description

This indicates an attack attempt against a buffer-overflow vulnerability in ViRobot Linux Server.

The vulnerability is caused by an error when the vulnerable software handles
an HTTP POST request that includes a malicious "COOKIE". It allows a remote attacker to execute arbitrary code.

Affected Products

ViRobot Linux Server 2.0

Recommended Actions

Chmod -s every virobot binary in sight and filter remote access to the web interface, or upgrade to higher versions.

Coverage

IPS
VCM

Reference/s

http://www.securityfocus.com/bid/13964 (BugTraq)

Reference: VID-13714