Title : Cisco IOS Line Printer Daemon (LPD) Protocol Stack Overflow Vulnerability VUPEN ID : VUPEN/ADV-2007-3457 CVE ID : CVE-2007-5381
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-10-10
Technical Description
A vulnerability has been identified in Cisco IOS, which could be exploited by attackers to cause a denial of service or take complete control of an affected system. This issue is caused by a stack overflow error in the Line Printer Daemon (LPD) that insecurely displays the router's hostname using a "sprintf()" call when handling incoming TCP connections with a source port other than 515, which could be exploited by an attacker who has the ability to control or modify the hostname of a vulnerable device (e.g. via SNMP) to execute arbitrary code with elevated privileges.