J-Security Center

Title: Sambar Server Authentication Buffer Overflow Vulnerability

Severity: CRITICAL

Description:

Sambar Server is a multi-threaded web server which will run on Microsoft Windows 9x/ME/NT/2000 operating systems.

A buffer overflow vulnerability has been reported in some versions of Sambar Server. If extremely long strings are sent for the username and password used for authentication, it is possible to overwrite stack memory. It is possible to overwrite stack frame data, which can lead to the execution of arbitrary code.

As the Sambar server runs with SYSTEM privileges, exploitation of this vulnerability can lead to remote access to the system with administrative privileges.

Less clever exploitation of this vulnerability may cause the Sambar process to crash, resulting in a denial of service attack.

Affected Products:

  • Sambar Server 5.0.0 beta1
  • Sambar Server 5.0.0 beta2
  • Sambar Server 5.0.0 beta3
  • Sambar Server 5.0.0 beta4
  • Sambar Server 5.0.0 beta5
  • Sambar Server 5.0.0 beta6
  • Sambar Server 5.1.0

References:

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.