Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v7.5 - Exploits Update (Mon May 05 2008)

CVS pserver Directory Command Double free() Exploit Update

Exploits/Remote  [Linux]




• Mon May 05 2008
By sending a malformed 'Directory' request it is possible to create a condition where free() is called on memory that is still in use. This can result in an exploitable condition when free() is called on the memory chunk a second time. The agent installed by this exploit runs with administrative privileges. This update improve the exploit reliability.

Exploits Vulnerabiltiy: CVE-2003-15



< Back to Product Updates