SMART SynchronEyes Student and Teacher 6.0, and possibly earlier versions, allows remote attackers to cause a denial of service (memory consumption) via a certain packet to the Teacher discovery port that causes SynchronEyes to connect to the attacker's machine and read a value that is used as a parameter to malloc.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/429843/100/0/threaded | mailing list |
http://www.securityfocus.com/bid/17373 | vdb entry exploit |
http://www.vupen.com/english/advisories/2006/1241 | vdb entry |
http://securitytracker.com/id?1015869 | vdb entry |
http://www.osvdb.org/24392 | vdb entry |
http://secunia.com/advisories/19535 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/25663 | vdb entry |