Short Name |
REXEC:OVERFLOW:USERNAME |
---|---|
Severity |
High |
Recommended |
No |
Category |
REXEC |
Release Date |
2003/08/27 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This protocol anomaly triggers when it detects an REXEC connection with a specified remote user name that is too long. This can indicate a buffer overflow attempt.
An anomaly exists when an rexec command has a username that is too long. Receiving such a request may indicate an attack attempt. The impact of the flaw depends on how an rexecd daemon handles such malformed requests.