Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Ventrilo 2.1.2 through 2.3.0 allows remote attackers to cause a denial of service (application crash) via a status packet that contains less data than specified in the packet header sent to UDP port 3784.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ventrilo 服务器崩溃漏洞
Vulnerability Description
Ventrilo是广泛使用的VoIP软件,还可用于在线游戏。 除了用于接受客户端的TCP端口外,Ventrilo服务器还绑定了相同的UDP端口用于处理用户发送的状态请求。控制状态查询的代码中存在漏洞,如果所接收的报文中数据数量少于请求首部所指定的数量,就会导致服务器中断。 例如,正常状态查询的状态首部应包含有16个字节的数据,但如果没有包含数据的话就可以利用这个漏洞。 Windows server的日志文件会显示以下消息: ERROR: ServerLoop exception detected. Abo
CVSS Information
N/A
Vulnerability Type
N/A