Linksys BEFSX41 System Log Viewer Log_Page_Num Variable Overflow DoS

medium Nessus Plugin ID 11891

Language:

Synopsis

The remote host is vulnerable to a denial of service attack.

Description

The remote host seems to be a Linksys EtherFast Cable Firewall/Router.

This product is vulnerable to a remote denial of service attack : if logging is enabled, an attacker can specify a long URL which results in the router becoming unresponsive.

Solution

Update firmware to version 1.45.3.

See Also

http://www.nessus.org/u?b9f768be

Plugin Details

Severity: Medium

ID: 11891

File Name: linksys_dos.nasl

Version: 1.22

Type: remote

Family: CISCO

Published: 10/16/2003

Updated: 4/11/2022

Configuration: Enable paranoid mode, Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.4

CVSS v2

Risk Factor: Medium

Base Score: 6.3

Temporal Score: 4.7

Vector: CVSS2#AV:N/AC:M/Au:S/C:N/I:N/A:C

Vulnerability Information

CPE: cpe:/h:linksys:linksys:befsx41:1.43.3

Required KB Items: Settings/ParanoidReport

Exploit Ease: No known exploits are available

Reference Information

CVE: CVE-2003-1497

BID: 8834

CWE: 119