Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Denial of Service >> RealServer Ramgen crash (ramcrash)


Vulnerability Assessment Details

RealServer Ramgen crash (ramcrash)

Vulnerability Assessment Summary
Overflows a buffer in RealServer

Detailed Explanation for this Vulnerability Assessment

It was possible to crash the remote Real server
by sending the request :

GET /ramgen/AAAAA[...]AAA HTTP/1.1

A possible hacker may use this flaw to prevent this
system from serving Real Audio or Video
content to legitimate clients

Solution : Upgrade to a fixed version of RealServer.
Network Security Threat Level: High

Networks Security ID: 888

Vulnerability Assessment Copyright: This script is Copyright (C) 2000 Renaud Deraison

Cables, Connectors

DELL SVP Intel Pentium Dual Core Server w/2.7 GHz 2 GB RAM 260 GB HD WORKING
$79.99
DELL SVP Intel Pentium Dual Core Server w/2.7 GHz 2 GB RAM 260 GB HD WORKING pictureDell T7910 2 X E5-2697 V4 1TB HDD AMD FirePro W8100 256GB RAM 256GB SSD
$11310.0
Dell T7910 2 X E5-2697 V4 1TB HDD AMD FirePro W8100 256GB RAM 256GB SSD pictureLenovo ThinkPad W520 i7-2760QM 2.40GHz RAM 8GB HDD 250GB No OS
$279.0
Lenovo ThinkPad W520 i7-2760QM 2.40GHz RAM 8GB HDD 250GB No OS  pictureDELL POWEREDGE R210 Server Quad Core 2.4 GHz 4 GB Ram DELL SAS Raid Controller
$164.99
DELL POWEREDGE R210 Server Quad Core 2.4 GHz 4 GB Ram DELL SAS Raid Controller picture


Discussions

No Discussions have been posted on this vulnerability.