Secunia Logo
Netsikker nu! 2008
 
CVE Reference: CVE-2006-5156
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-5156

Description:
Buffer overflow in McAfee ePolicy Orchestrator before 3.5.0.720 and ProtectionPilot before 1.1.1.126 allows remote attackers to execute arbitrary code via a request to /spipe/pkg/ with a long source header.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/29307

ST
  1016970
  1016971

SAID
  Secunia Advisory: SA22222

OSVDB
  29421

MISC
  http://www.remote-exploit.org/advisories/mcafee-epo.pdf

FULLDISC
  http://lists.grok.org.uk/pipermail/full-disclosure/2006-October/049803.html

CONFIRM
  http://knowledge.mcafee.com/article/365/8611438_f.SAL_Public.html
  http://download.nai.com/products/patches/protectionpilot/v1.1.1/PRP1113.txt
  http://knowledge.mcafee.com/SupportSite/search.do?cmd=displayKC&docType=kc&externalId=8611438&sliceId=SAL_Public&dialogID=2997768&stateId=0%200%202995803
  http://download.nai.com/products/patches/ePO/v3.5/EPO3506.txt

CERT-VN
  842452

BID
  20288


Return to the previous page.