ADVISORY * =Thu Mar 16 21:10:46 EST 2006= * Integer Overflow in Tripwire




8===D Description
Tripwire incorrectly parses integer data, and this can be used to execute 
arbitrary code.

8===D History
16/3/2006 8==D Public Disclosure.
8===D Vendor Response
Tripwire had extended no information.
8===D CVE Information
The Common Vulnerabilities and Exposures (CVE) project has assigned the name 
CVE-2006-591681 to this issue

Appendix A Vendor Information
http://www.tripwire.com/

Appendix B References
RFC 5767

Contact
Fabien Kraemer [EMAIL PROTECTED]
1-888-565-9428

CEH CSFA SSP-CNSA GIPS GHTQ CAP SSCP 

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Reply via email to