>> LANDesk Management Suite Alert Service Remote Buffer Overflow Vulnerability
Title : LANDesk Management Suite Alert Service Remote Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2007-1391 CVE ID : CVE-2007-1674
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-04-16
Technical Description
A vulnerability has been identified in LANDesk Management Suite, which could be exploited by attackers to remotely take complete control of an affected system. This issue is caused by a stack overflow error in the Alert Service (Aolnsrvr.exe) that fails to properly handle malformed data sent to port 65535/UDP, which could be exploited by remote unauthenticated attackers to execute arbitrary commands with SYSTEM privileges.