Orbz Password Field Buffer Overflow Vulnerability
- 0
- Add a Comment
- No Related Post
In other words, don’t host any games for players outside your local network until they fix it…
CRITICAL: Highly critical IMPACT: System access WHERE: From remote SOFTWARE: Orbz 2.xLuigi Auriemma has reported a vulnerability in Orbz, which potentially can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to a boundary error when handling join requests. This can be exploited to cause a buffer overflow by supplying an overly long password.
Successful exploitation may allow execution of arbitrary code.
The vulnerability has been reported in version 2.10 and prior.
Solution:
Host games on trusted networks only.
