Integer overflow in Arora allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the range of the unsigned short data type, as demonstrated by a value of 65561 for TCP port 25.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/510283/100/0/threaded | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/57234 | vdb entry |