scsi-target-utils: stack buffer overflow vulnerability
Published Jul 8, 2010
5.0
MEDIUMCVSS 2.0
EPSS 5.35%
Description
Multiple buffer overflows in the iSNS implementation in isns.c in (1) Linux SCSI target framework (aka tgt or scsi-target-utils) before 1.0.6, (2) iSCSI Enterprise Target (aka iscsitarget or IET) 1.4.20.1 and earlier, and (3) Generic SCSI Target Subsystem for Linux (aka SCST or iscsi-scst) 1.0.1.1 and earlier allow remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via (a) a long iSCSI Name string in an SCN message or (b) an invalid PDU.
Affected products
No data.
Configuration 1
Configuration 2
- ≤ 1.4.20
- 0.1.0
- 0.2.0
- 0.2.1
- 0.2.2
- 0.2.3
- 0.2.4
- 0.2.5
- 0.2.6
- 0.3.0
- 0.3.1
- 0.3.2
- 0.3.3
- 0.3.4
- 0.3.5
- 0.3.6
- 0.3.7
- 0.3.8
- 0.4.0
- 0.4.1
- 0.4.2
- 0.4.3
- 0.4.4
- 0.4.5
- 0.4.6
- 0.4.7
- 0.4.8
- 0.4.9
- 0.4.10
- 0.4.11
- 0.4.12
- 0.4.13
- 0.4.14
- 0.4.15
- 0.4.16
- 0.4.17
- 1.4.18
- 1.4.19
Configuration 3
- ≤ 1.0.1
- 0.9.0a
- 0.9.1
- 0.9.2
- 0.9.3
- 0.9.3
- 0.9.3
- 0.9.3
- 0.9.4
- 0.9.5
- 0.9.5.1
- 0.9.5.2
- 1.0.0
Running on/with
- n/a
No data.
Red Hat Enterprise Linux 5
scsi-target-utils-0:0.0-6.20091205snap.el5_5.3
Fixed · RHSA-2010:0518
Red Hat Enterprise Linux 5
scsi-target-utils
Affected
Red Hat Enterprise Linux 6
scsi-target-utils
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | scsi-target-utils-0:0.0-6.20091205snap.el5_5.3 | Fixed | RHSA-2010:0518 |
| Red Hat Enterprise Linux 5 | scsi-target-utils | Affected | n/a |
| Red Hat Enterprise Linux 6 | scsi-target-utils | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (23)
- http://archives.neohapsis.com/archives/bugtraq/2010-07/0022.html mailing-listx_refsource_BUGTRAQ
- http://archives.neohapsis.com/archives/fulldisclosure/2010-07/0058.html mailing-listx_refsource_FULLDISC
- http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html vendor-advisoryx_refsource_SUSE
- http://lists.wpkg.org/pipermail/stgt/2010-July/003858.html mailing-listx_refsource_MLIST
- http://scst.svn.sourceforge.net/viewvc/scst/trunk/iscsi-scst/usr/isns.c?r1=1793&r2=1792&pathrev=1793 x_refsource_CONFIRM
- http://scst.svn.sourceforge.net/viewvc/scst?view=revision&revision=1793 x_refsource_CONFIRM
- http://secunia.com/advisories/40485 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/40494 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/40495 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://sourceforge.net/mailarchive/forum.php?thread_name=E2BB8074E5500C42984D980D4BD78EF904075006%40MFG-NYC-EXCH2.mfg.prv&forum_name=iscsitarget-devel mailing-listx_refsource_MLIST
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:131 vendor-advisoryx_refsource_MANDRIVA
- http://www.osvdb.org/65990 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/65991 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/65992 vdb-entryx_refsource_OSVDB
- http://www.redhat.com/support/errata/RHSA-2010-0518.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/41327 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id?1024175 vdb-entryx_refsource_SECTRACK
- http://www.vupen.com/english/advisories/2010/1760 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2010/1786 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2010-2221 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=593877 x_refsource_CONFIRMIssue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2010-2221
- https://www.cve.org/CVERecord?id=CVE-2010-2221
Change history (0)
No recorded changes yet.