Synopsis
The remote web server contains a CGI script that is susceptible to a denial of service attack.
Description
According to its version number, the installation of Sympa on the remote host has a flaw in one of it's scripts (wwsympa.pl) that would allow a remote attacker to overflow the SYMPA server. Specifically, within the cgi script wwsympa.pl is a 'do_search_list' function that fails to perform bounds checking. An attacker, passing a specially formatted long string to this function, would be able to crash the remote SYMPA server. At the time of this writing, the attack is only known to cause a denial of service.
Solution
Update to version 4.1.2 or later.
Plugin Details
File Name: sympa_do_search_list_overflow.nasl
Configuration: Enable paranoid mode, Enable thorough checks
Supported Sensors: Nessus
Vulnerability Information
CPE: cpe:/a:sympa:sympa
Required KB Items: Settings/ParanoidReport
Excluded KB Items: Settings/disable_cgi_scanning
Vulnerability Publication Date: 10/21/2002