Short Name |
TELNET:DOS:GAMSOFT |
---|---|
Severity |
Medium |
Recommended |
No |
Category |
TELNET |
Keywords |
GAMSoft Telsrv DoS |
Release Date |
2012/01/19 |
Update Number |
2066 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known flaw in GAMSoft Telsrv. A successful exploit would result in a Denial of Service (DoS).
GAMSoft Telsrv telnet server is prone to a trivial denial-of-service attack. If a malicious user were to connect to port 23 and supply a username of approximately 4550 characters, the telnet application would crash. Restarting the service is required to regain normal functionality. In some cases, Telsrv will return an error message that contains a valid username and password in plain-text format. This can be used to gain unauthorized access to the telnet server.