APP: Apt-www-proxy awp_log() Denial of Service

This signature detects attempts to exploit a known vulnerability against Apt-www-proxy version 0.1. Attackers can send a malicious request that contains no data to the daemon on port 6543; this denial of service prevents proxy users from receiving important updates using apt-get.

Extended Description

If the apt-www-proxy vulnerability is successfully exploited, an attacker can cause the apt-www-proxy daemon to cease operation, causing a denial of service condition for legitimate users of the software. Due to the nature of the vulnerability, arbitrary code execution may be possible, but this has not yet been successfully demonstrated.

Short Name
APP:APT-WWW-PROXY:AWPLOG-DOS
Severity
Warning
Recommended
False
Recommended Action
None
Category
APP
Keywords
Apt-www-proxy Denial Service awp_log() of
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
Port
TCP/6543
False Positive
Unknown

Found a potential security threat?