Description
ZOC Terminal 7.25.5 contains a denial of service vulnerability in the private key file input field that allows attackers to crash the application. Attackers can overwrite the private key file input with a 2000-byte buffer, causing the application to become unresponsive when attempting to create SSH key files.
Problem types
Product status
Credits
chuyreds
References
www.exploit-db.com/exploits/48292 (ExploitDB-48292)
www.emtec.com (Vendor Homepage)
www.vulncheck.com/...inal-private-key-file-denial-of-service (VulnCheck Advisory: ZOC Terminal v7.25.5 - 'Private key file' Denial of Service)