Required CVE Record Information
Description
BomberClone 0.11.6 and earlier allows remote attackers to cause a denial of service (daemon crash) via (1) a certain malformed PKGF_ackreq packet, which triggers a crash in the rscache_add() function in pkgcache.c; and (2) an error packet, which is intended to be received by clients and force client shutdown, but also triggers server shutdown.
References 11 Total
- secunia.com: 21303 third-party-advisory
- securityfocus.com: 19255 vdb-entry
- osvdb.org: 27647 vdb-entry
- debian.org: DSA-1180 vendor-advisory
- http://aluigi.org/poc/bcloneboom.zip
- osvdb.org: 27649 vdb-entry
- http://aluigi.altervista.org/adv/bcloneboom-adv.txt
- exchange.xforce.ibmcloud.com: bomberclone-rscacheadd-dos(28090) vdb-entry
- exchange.xforce.ibmcloud.com: bomberclone-error-packet-dos(28093) vdb-entry
- vupen.com: ADV-2006-3067 vdb-entry
- secunia.com: 21985 third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 11 Total
- secunia.com: 21303 third-party-advisoryx_transferred
- securityfocus.com: 19255 vdb-entryx_transferred
- osvdb.org: 27647 vdb-entryx_transferred
- debian.org: DSA-1180 vendor-advisoryx_transferred
- http://aluigi.org/poc/bcloneboom.zip x_transferred
- osvdb.org: 27649 vdb-entryx_transferred
- http://aluigi.altervista.org/adv/bcloneboom-adv.txt x_transferred
- exchange.xforce.ibmcloud.com: bomberclone-rscacheadd-dos(28090) vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: bomberclone-error-packet-dos(28093) vdb-entryx_transferred
- vupen.com: ADV-2006-3067 vdb-entryx_transferred
- secunia.com: 21985 third-party-advisoryx_transferred