Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple format string vulnerabilities in heartbeat 0.4.9 and earlier (claimed as buffer overflows in some sources) allow remote attackers to execute arbitrary code via certain packets to UDP port 694 (incorrectly claimed as TCP in some sources).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux-HA Heartbeat远程缓冲区溢出漏洞
Vulnerability Description
Heartbeat是一款高可用性(High-Availability)Linux下的系统监视工具。 Linux-HA heartbeat在处理TCP包时存在问题,远程攻击者可以利用这个漏洞进行远程缓冲区溢出攻击,可能以root用户的权限在系统上执行任意指令。 如果系统把心跳信号通过Internet网络发送信息的情况下,远程攻击者可以发送特殊构建的TCP包触发缓冲区溢出,精心构建提交数据可能以root用户的权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A