CVE-2008-7126: Buffer Overflow
Integer overflow in osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet with a large string length value to UDP port 14000, which triggers a heap-based buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-7126?
CVE-2008-7126 has a high severity due to its potential to cause a denial of service and execute arbitrary code.
How does CVE-2008-7126 exploit occur?
CVE-2008-7126 exploits an integer overflow in osagent.exe by sending a crafted packet with a large string length value to UDP port 14000.
Which software versions are affected by CVE-2008-7126?
CVE-2008-7126 affects all versions of Borland VisiBroker up to and including 08.00.00.C1.03.
How can I mitigate the risks of CVE-2008-7126?
To mitigate CVE-2008-7126, you should upgrade to a fixed version of Borland VisiBroker that addresses this vulnerability.
What are the potential impacts of CVE-2008-7126?
The impacts of CVE-2008-7126 include denial of service through application crashes and the possibility of executing arbitrary code.