SYSLOG: Crafted passlogd Buffer Overflow Packet

This signature detects attempts to exploit a known vulnerability against passlogd 0.1. The proof-of-concept exploit for the passlogd sniffer creates a malicious packet; attackers can use this exploit and packet to overflow the sniffer daemon and execute malicious code on the server as root.

Extended Description

It has been reported that passlogd does not properly handle some types of input. Because of this, an attacker may be able to gain unauthorized access to hosts running the vulnerable software.

Affected Products

Passlogd_project passlogd

Short Name
SYSLOG:SYSLOG-CRAFTED-PKT
Severity
Critical
Recommended
False
Recommended Action
Drop
Category
SYSLOG
Keywords
Buffer Crafted Overflow Packet bid:7261 passlogd
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Passlogd_project

Found a potential security threat?