First published: Thu Oct 18 2001(Updated: )
3COM OfficeConnect 812 and 840 ADSL Router 4.2, running OCR812 router software 1.1.9 and earlier, allows remote attackers to cause a denial of service via a long string containing a large number of "%s" strings, possibly triggering a format string vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
3com 3c840-us | <=1.1.9 | |
3com 3cp4144 | <=1.1.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0740 is classified as a denial of service vulnerability.
To fix CVE-2001-0740, update the firmware of the affected 3COM OfficeConnect routers to a version later than 1.1.9.
CVE-2001-0740 is caused by a format string vulnerability that can be exploited using specially crafted long strings.
CVE-2001-0740 affects the 3COM OfficeConnect 812 and 840 ADSL routers running OCR812 router software version 1.1.9 and earlier.
Yes, CVE-2001-0740 can be exploited remotely by attackers sending crafted requests to the vulnerable routers.