TELNET: Login Command Overflow

This signature detects attempts to exploit a known vulnerability in the login procedure of some telnet server, especially a very long username. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the server.

Extended Description

Verso NetPerformer Frame Relay Access Device (FRAD) is prone to a remotely exploitable buffer overflow in the telnet service. A remote attacker can exploit this issue to execute arbitrary code on the affected device. Failed exploit attempts will likely crash the device, denying service to legitimate users.

Affected Products

Verso netperformer_frame_relay_access_device

References

BugTraq: 19989

Short Name
TELNET:OVERFLOW:LOGIN-OF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
TELNET
Keywords
Command Login Overflow bid:19989
Release Date
02/17/2011
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Verso

Found a potential security threat?