The ReadRequestFromClient function in server/os/io.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (crash) via multiple simultaneous connections, which triggers a NULL pointer dereference.
Link | Tags |
---|---|
http://www.mandriva.com/security/advisories?name=MDKSA-2007:065 | vendor advisory |
http://www.securitytracker.com/id?1017822 | vdb entry |
http://secunia.com/advisories/24980 | third party advisory |
http://secunia.com/advisories/24527 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/23017 | vdb entry |
http://secunia.com/advisories/24601 | third party advisory |
http://www.ubuntu.com/usn/usn-446-1 | vendor advisory |
http://secunia.com/advisories/24628 | third party advisory |
http://security.gentoo.org/glsa/glsa-200704-20.xml | vendor advisory |
http://www.vupen.com/english/advisories/2007/0997 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/33059 | vdb entry |
http://www.securityfocus.com/archive/1/464606/30/7230/threaded | mailing list |
http://secunia.com/advisories/24638 | third party advisory |
http://aluigi.altervista.org/adv/nasbugs-adv.txt | vendor advisory |
http://www.debian.org/security/2007/dsa-1273 | vendor advisory |
http://www.radscan.com/nas/HISTORY |