HIGH
Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, as used in various RealSecure, Proventia, and BlackICE products, allow remote attackers to execute arbitrary code via a SRV_MULTI response containing a SRV_USER_ONLINE response packet and a SRV_META_USER response packet with long (1) nickname, (2) firstname, (3) lastname, or (4) email address fields, as exploited by the Witty worm
Published Mar 23, 2004
7.5
HIGHCVSS 2.0
EPSS 73.33%
Description
Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, as used in various RealSecure, Proventia, and BlackICE products, allow remote attackers to execute arbitrary code via a SRV_MULTI response containing a SRV_USER_ONLINE response packet and a SRV_META_USER response packet with long (1) nickname, (2) firstname, (3) lastname, or (4) email address fields, as exploited by the Witty worm.
Affected products
No data.
Configuration 1
OR
- 3.6ebz
- 3.6eca
- 3.6ecb
- 3.6ecc
- 3.6ecd
- 3.6ece
- 3.6ecf
- 3.6cbz
- 3.6cca
- 3.6ccb
- 3.6ccc
- 3.6ccd
- 3.6cce
- 3.6ccf
- 3.6cbz
- 3.6cca
- 3.6ccb
- 3.6ccc
- 3.6ccd
- 3.6cce
- 3.6ccf
- 3.6ebz
- 3.6eca
- 3.6ecb
- 3.6ecd
- 3.6ece
- 3.6ecf
- 7.0eba
- 7.0ebf
- 7.0ebg
- 7.0ebh
- 7.0ebj
- 7.0ebk
- 7.0ebl
- 3.6ebz
- 3.6eca
- 3.6ecb
- 3.6ecc
- 3.6ecd
- 3.6ece
- 3.6ecf
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 3.6ebz
- 3.6eca
- 3.6ecb
- 3.6ecc
- 3.6ecd
- 3.6ece
- 3.6ecf
- 6.0
- 6.0.1
- 6.0.1_win_sr1.1
- 6.5
- 6.5
- 6.5
- 6.5_win_sr3.1
- 6.5_win_sr3.4
- 6.5_win_sr3.5
- 6.5_win_sr3.6
- 6.5_win_sr3.7
- 6.5_win_sr3.8
- 6.5_win_sr3.9
- 6.5_win_sr3.10
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
- 7.0
Configuration 2
OR
- 20.11
- 22.1
- 22.2
- 22.3
- 22.4
- 22.5
- 22.6
- 22.7
- 22.8
- 22.9
- 22.10
- 22.1
- 22.2
- 22.3
- 22.4
- 22.5
- 22.6
- 22.7
- 22.8
- 22.9
- 22.10
- 22.11
- 1.1
- 1.2
- 1.3
- 1.4
- 1.5
- 1.6
- 1.7
- 1.8
- 1.9
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (10)
- http://marc.info/?l=bugtraq&m=107965651712378&w=2 mailing-listx_refsource_BUGTRAQ
- http://secunia.com/advisories/11073 third-party-advisoryx_refsource_SECUNIA
- http://www.ciac.org/ciac/bulletins/o-104.shtml third-party-advisorygovernment-resourcex_refsource_CIAC
- http://www.eeye.com/html/Research/Advisories/AD20040318.html third-party-advisoryx_refsource_EEYE
- http://www.kb.cert.org/vuls/id/947254 third-party-advisoryx_refsource_CERT-VNPatchThird Party AdvisoryUS Government Resource
- http://www.osvdb.org/4355 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/bid/9913 vdb-entryx_refsource_BIDExploitPatchVendor Advisory
- http://xforce.iss.net/xforce/alerts/id/166 third-party-advisoryx_refsource_ISSPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15442 vdb-entryx_refsource_XF
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15543 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://marc.info/?l=bugtraq&m=107965651712378&w=2 | mailing-listx_refsource_BUGTRAQ | |
| http://secunia.com/advisories/11073 | third-party-advisoryx_refsource_SECUNIA | |
| http://www.ciac.org/ciac/bulletins/o-104.shtml | third-party-advisorygovernment-resourcex_refsource_CIAC | |
| http://www.eeye.com/html/Research/Advisories/AD20040318.html | third-party-advisoryx_refsource_EEYE | |
| http://www.kb.cert.org/vuls/id/947254 | third-party-advisoryx_refsource_CERT-VNPatchThird Party AdvisoryUS Government Resource | |
| http://www.osvdb.org/4355 | vdb-entryx_refsource_OSVDB | |
| http://www.securityfocus.com/bid/9913 | vdb-entryx_refsource_BIDExploitPatchVendor Advisory | |
| http://xforce.iss.net/xforce/alerts/id/166 | third-party-advisoryx_refsource_ISSPatchVendor Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/15442 | vdb-entryx_refsource_XF | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/15543 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 23, 2004
Updated Aug 8, 2024
Reserved Mar 18, 2004
Link CVE-2004-0362
CISA Vulnrichment
Updated n/a