Security Advisory

CVE-2004-1702

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-02-21 05:00:00
Last updated 2024-08-08 01:00:37
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 does not properly check the return value of the ReceiveTransaction function, which leads to a failed malloc call and triggers to a null dereference, which allows remote attackers to cause a denial of service (crash).