Wincom.LPD.Total.Buffer.Overflow

Release DateFeb 13, 2008
SeverityCritical
ImpactSystem Compromise: remote attackers can gain control of vulnerable systems.
DescriptionThis indicates an attempt to exploit a buffer overflow vulnerability in WinCom LPD Total.

WinCom LPD Total is vulnerable to multiple buffer overflow exploits. By sending an overly long authentication packet to the remote administration service, an attacker may be able to execute arbitrary code.
Affected ProductsWinComLPD 3.0.2 and earlier.
Recommended ActionsUpgrade to latest version.
Reference/shttp://www.securityfocus.com/bid/27614 (BugTraq)
http://www.vupen.com/english/advisories/2008/0410 (FrSIRT)
Reference: VID-15395