Allied Telesyn AT-8024 1.3.1 and Rapier 24 switches allow remote authenticated users to cause a denial of service in the management interface via a stream of zero (null) bytes sent via UDP to a running service.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/6233 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2002-11/0291.html | mailing list exploit |
http://www.iss.net/security_center/static/10680.php | vdb entry |