ID

VAR-E-201304-0431


TITLE

AT-TFTP Server Stack Buffer Overflow Vulnerability

Trust: 0.3

sources: BID: 59051

DESCRIPTION

AT-TFTP is prone to a remote stack-based buffer-overflow vulnerability.
Successful exploits will allow attackers to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
AT-TFTP 2.0 is vulnerable; other versions may also be affected.

Trust: 0.3

sources: BID: 59051

AFFECTED PRODUCTS

vendor:alliedmodel:telesis at-tftp serverscope:eqversion:2.0

Trust: 0.3

sources: BID: 59051

EXPLOIT

An attacker can exploit this issue using readily available tools.
The following exploit code is available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/59051.py">/data/vulnerabilities/exploits/59051.py</a></li>

Trust: 0.3

sources: BID: 59051

PRICE

Free

Trust: 0.3

sources: BID: 59051

TYPE

Boundary Condition Error

Trust: 0.3

sources: BID: 59051

CREDITS

xis_one

Trust: 0.3

sources: BID: 59051

EXTERNAL IDS

db:BIDid:59051

Trust: 0.3

sources: BID: 59051

REFERENCES

url:http://www.alliedtelesyn.co.uk

Trust: 0.3

sources: BID: 59051

SOURCES

db:BIDid:59051

LAST UPDATE DATE

2022-07-27T10:01:05.219000+00:00


SOURCES UPDATE DATE

db:BIDid:59051date:2013-04-12T00:00:00

SOURCES RELEASE DATE

db:BIDid:59051date:2013-04-12T00:00:00