CVE-2007-1545: Medium severity Mandrakesoft Mandrake Linux vulnerability
Published Mar 20, 2007
·Updated
The AddResource function in server/dia/resource.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (server crash) via a nonexistent client ID.
Affected Software
3 affected components
Mandrakesoft Mandrake Linux=2007
Mandrakesoft Mandrake Linux=2007
Radscan Network Audio System=1.8a
Remediation
Patch Available
Event History
Mar 20, 2007
CVE Published
10:19 PM
Data Sourced
10:19 PM
DescriptionWeaknessAffected Software
Mar 21, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1545?
CVE-2007-1545 has a severity rating that indicates it can cause a denial of service due to server crashes.
2
How do I fix CVE-2007-1545?
To fix CVE-2007-1545, upgrade to a version of Network Audio System that addresses this vulnerability.
3
What systems are affected by CVE-2007-1545?
CVE-2007-1545 affects versions of Network Audio System prior to 1.8a SVN 237.
4
Can CVE-2007-1545 be exploited remotely?
Yes, CVE-2007-1545 can be exploited remotely by sending requests with nonexistent client IDs.
5
Is there a way to mitigate the effects of CVE-2007-1545?
Mitigation involves limiting access to the Network Audio System to trusted clients and monitoring for unusual activity.