APP: Heartbeat Buffer Overflow (Linux/x86)

This signature detects attempts to exploit a known vulnerability against Heartbeat 0.4.9.1 for Linux. A successful attack can allow attackers to execute arbitrary commands with daemon privileges.

Extended Description

The Linux-HA heartbeat utility is vulnerable to a remotely exploitable buffer overflow condition. Attackers may exploit the vulnerability to execute arbitrary code. It has been reported that the condition is related to the handling of TCP packets.

Affected Products

Linux-ha heartbeat

Short Name
APP:MISC:HEARTBEAT-OF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
(Linux/x86) Buffer CVE-2002-1215 Heartbeat Overflow bid:5955
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
UDP/694
False Positive
Unknown
Vendors

Linux-ha

CVSS Score

10.0

Found a potential security threat?