CVE-2007-5381: Buffer Overflow
Stack-based buffer overflow in the Line Printer Daemon (LPD) in Cisco IOS before 12.2(18)SXF11, 12.4(16a), and 12.4(2)T6 allow remote attackers to execute arbitrary code by setting a long hostname on the target system, then causing an error message to be printed, as demonstrated by a telnet session to the LPD from a source port other than 515.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5381?
CVE-2007-5381 has a critical severity rating due to its potential for remote code execution.
How do I fix CVE-2007-5381?
To fix CVE-2007-5381, upgrade to Cisco IOS versions 12.2(18)SXF11, 12.4(16a), or 12.4(2)T6 or later.
What impact does CVE-2007-5381 have on my Cisco IOS device?
CVE-2007-5381 allows remote attackers to execute arbitrary code on affected Cisco IOS devices by exploiting a stack-based buffer overflow.
What products are affected by CVE-2007-5381?
CVE-2007-5381 affects multiple versions of Cisco IOS, specifically versions prior to 12.2(18)SXF11 and 12.4(16a).
How can I determine if my Cisco device is vulnerable to CVE-2007-5381?
You can determine your device's vulnerability by checking the IOS version; any version prior to the mentioned fixed versions is considered vulnerable.