Sybase.SQL.Anywhere.MobiLink.Crafted.Strings.Buffer.Overflow

description-logoDescription

This indicates an attempt to exploit a buffer overflow vulnerability in Sybase MobiLink.
The vulnerability is caused by a buffer overflow error in the MobiLink component, when processing overly long data (username, version or remote ID) sent to port 2439/TCP. It can be exploited by remote unauthenticated attackers to crash the application or execute arbitrary code.

affected-products-logoAffected Products

Sybase MobiLink 10.0.1.3629

Impact logoImpact

Denial of service.
System Compromise: remote code execution.

recomended-action-logoRecommended Actions

Currently we are not aware of any vendor supplied patch for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)