Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

IDA Pro Remote Debugger Server Authentication Bypass



The remote host is vulnerable to a flaw that allows for the bypassing of authentication.


The remote host is running DataRescue IDA Pro, a commercial disassembler. This version of IDA Pro is vulnerable to a flaw in the way that it handles remote data passed to the processor_request() function, an authentication function. An attacker exploiting this flaw can bypass authentication and execute commands anonymously. Successful exploitation gives the attacker the ability to execute arbitrary commands on the remote system.


Upgrade or patch according to vendor recommendations.