First published: Tue Mar 20 2007(Updated: )
The ReadRequestFromClient function in server/os/io.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (crash) via multiple simultaneous connections, which triggers a NULL pointer dereference.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mandrake Linux | =2007 | |
radscan Network Audio System | =1.8a | |
Mandrake Linux | =2007 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1547 has a severity rating of medium due to its potential to cause denial of service.
To fix CVE-2007-1547, upgrade to Network Audio System version 1.8a SVN 238 or later, which patches this vulnerability.
CVE-2007-1547 affects users of the Network Audio System version 1.8a prior to SVN 238.
CVE-2007-1547 represents a denial of service attack which can crash the application through exploitation of a NULL pointer dereference.
Yes, CVE-2007-1547 can be exploited remotely via multiple simultaneous connections to the affected service.