TFTP Server Packet Handling Remote Buffer Overflow Vulnerability

  Severity: CRITICAL
  CVE Identifier: CVE-2008-1611
  Advisory Date: MAY 31, 2016

  DESCRIPTION

Stack-based buffer overflow in TFTP Server for Windows allows remote attackers to cause a denial of service or execute arbitrary code via a long filename in a read or write request. nvd: Information regarding how the service runs as system: http://www.tftp-server.com/

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1003955
  Trend Micro Deep Security DPI Rule Name: 1003955 - TFTP Server Packet Handling Remote Buffer Overflow Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • tftp-server winagents_tftp_server sp_1.4