Computer Security
[EN] securityvulns.ru no-pyccku


Nero MediaHome DoS
Published:10.01.2013
Source:
SecurityVulns ID:12824
Type:remote
Threat Level:
5/10
Description:Different vulnerabilities on TCP/54444 requests parsing.
Affected:NERO : MediaHome 4.5
CVE:CVE-2012-5877 (Nero MediaHome 4.5.8.0 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an HTTP header without a name.)
 CVE-2012-5876 (Multiple off-by-one errors in NMMediaServerService.dll in Nero MediaHome 4.5.8.0 and earlier allow remote attackers to cause a denial of service (crash) via a long string in the (1) request line or (2) HTTP Referer header to TCP port 54444, which triggers a heap-based buffer overflow.)
Original documentdocumentHigh-Tech Bridge Security Research, Nero MediaHome Multiple Remote DoS Vulnerabilities (10.01.2013)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod