APP: Heartbeat Buffer Overflow (Linux/x86)
This signature detects attempts to exploit a known vulnerability against Heartbeat 0.4.9.1 for Linux. A successful attack can allow attackers to execute arbitrary commands with daemon privileges.
Extended Description
The Linux-HA heartbeat utility is vulnerable to a remotely exploitable buffer overflow condition. Attackers may exploit the vulnerability to execute arbitrary code. It has been reported that the condition is related to the handling of TCP packets.
Affected Products
Linux-ha heartbeat
References
BugTraq: 5955
CVE: CVE-2002-1215
URL: http://linux-ha.org/security/sec01.txt http://www.debian.org/security/2002/dsa-174
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Linux-ha
10.0