APP: Ganglia Meta Daemon Stack Buffer Overflow

This signature detects attempts to exploit a known vulnerability in Ganglia Meta Daemon. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the server.

Extended Description

Ganglia is prone to a remote stack-based buffer-overflow vulnerability because the software fails to perform adequate boundary checks on user-supplied input. Attackers can leverage this issue to execute arbitrary code in the context of the application. Successful exploits will compromise the application and the underlying computer. Failed attacks will cause denial-of-service conditions.

Affected Products

Debian linux

References

BugTraq: 33299

CVE: CVE-2009-0241

Short Name
APP:MISC:GANGLIA-METE-BOF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Buffer CVE-2009-0241 Daemon Ganglia Meta Overflow Stack bid:33299
Release Date
09/17/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
tcp/8652
False Positive
Unknown
Vendors

Ganglia

Suse

Debian

Gentoo

CVSS Score

7.5

Found a potential security threat?