Fujitsu Systemcast Wizard PXE buffer overflow

Strike ID:
E09-37i01
CVSS:
10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C)
False Positive:
f
Variants:
1
Year:
2009

Description

This strike exploits a vulnerability in Fujitsu SystemcastWizard Lite. When receiving UDP packets the PXE component allocates a fixed size buffer of 0x400 bytes in heap memory. Later it copies packet data of up to 0x5DC bytes in the said buffer, which overwrites critical data.

CVE

Bid