avatar

Please consider registering
guest

Log In Register

Semisecure Login is not enabled!
Please enable JavaScript and use a modern browser to ensure that your password is encrypted.

Register | Lost password?
Advanced Search:

— Forum Scope —



— Match —



— Forum Options —




Wildcard usage:
*  matches any number of characters    %  matches exactly one character

Minimum search word length is 4 characters - maximum search word length is 84 characters

Topic RSS
CORELAN-10-023 – Mocha LPD Remote Buffer Oveflow
April 14, 2010
22:44
avatar
mr_me
Australia

Special guest
Forum Posts: 313
Member Since:
November 24, 2009
Offline

Advisory : CORELAN-10-023

Disclosure date : 15th Apr 2010

CVE-2010-1687

 

0x00 : Vulnerability information

[+] Product : Mocha LPD

[+] Version : 1.9

[+] Vendor : http://www.mochasoft.dk/

[+] URL : http://www.mochasoft.dk/lpd.htm

[+] Type of vulnerability : Remote Buffer Overflow

[+] Risk rating : Low

[+] Issue fixed in version : none

[+] Vulnerability discovered by : mr_me

[+] Greetings to : The Corelan Security Team (http://www.corelan.be:8800/ind…..m-members/)

 

0x01 : Vendor description of software

From the vendor website:

Mocha W32 LPD is a 32-Bit Print Server application for Windows-95/98/2000 or XP Workstations. It works as a LPD server, giving your AS/400 or UNIX system access to local Printers on the Windows platform.

Price information

25 USD (~20 EUR)

 


 


0x02 : Vulnerability details

Remote Stack Overflow:

When the server application recieves a malicous 'recieve jobs' request it fails to properly sanitize the request resulting in a stack based buffer overflow.

 

0x03 : Vendor communication

 10th Apr, 2010 : Vendor contacted

 10th Apr, 2010 : Vendor declines help and threatens with lawsuit

 12th Apr, 2010 : Vendor contacted again, tried to convince him to work with us

 12th Apr, 2010 : Vendor declines help again, states that he does not care about the bug

 15th Apr, 2010 : Public Disclosure

 

0x04 : Exploit/PoC

here

The road to hell is paved in good intentions.
Forum Timezone: Europe/Brussels

Most Users Ever Online: 91

Currently Online:
5 Guest(s)

Currently Browsing this Page:
1 Guest(s)

Top Posters:

mr_me: 313

Lincoln: 198

rick2600: 181

redsees: 179

MaRkO T.: 174

ekse: 144

Edi: 127

Sud0: 95

sinn3r: 88

jacktheripper: 78

Member Stats:

Guest Posters: 1

Members: 9447

Moderators: 1

Admins: 1

Forum Stats:

Groups: 6

Forums: 70

Topics: 1078

Posts: 6454

Newest Members: Bunny, rzld, mryv, oneian, saruhand, gun4liv, almughairi, lightningtechie, silicrax, sncz

Moderators: Peter Van Eeckhoutte (2872)

Administrators: Peter Van Eeckhoutte (2872)