First published: Tue Mar 20 2007(Updated: )
The AddResource function in server/dia/resource.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (server crash) via a nonexistent client ID.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mandrake Linux | =2007 | |
Mandrake Linux | =2007 | |
radscan Network Audio System | =1.8a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1545 has a severity rating that indicates it can cause a denial of service due to server crashes.
To fix CVE-2007-1545, upgrade to a version of Network Audio System that addresses this vulnerability.
CVE-2007-1545 affects versions of Network Audio System prior to 1.8a SVN 237.
Yes, CVE-2007-1545 can be exploited remotely by sending requests with nonexistent client IDs.
Mitigation involves limiting access to the Network Audio System to trusted clients and monitoring for unusual activity.