![]() |
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ....
|
Guardian Digital Inc. > InfoCenter > Mailing List Archives > BugTraq BugTraq Mailing List Archive
From: Chris Wysopal (weld@vulnwatch.org)
Application: Netcat for Windows 1.1
Summary
Netcat for Windows 1.1 has a buffer overflow vulnerability that allows
Note that this issue does not exist in netcat for the unix platform.
Details
doexec.c (line 445) was missing a check to see if BufferCnt had
if (RecvBuffer[0] == '\n' || RecvBuffer[0] == '\r' ||
Update
A fixed version, Netcat for Windows 1.11, is available at:
Credit
Hat Squad discovered this vulnerabiltiy. Hat Squad's advisory is
|