Home    Products    Downloads    News    Partners    About Us
 
   Watch the Traffic IQ Professional Movie
 
Karalon News Update 
21st June 2007
 
Traffic File Update June 2007

Traffic IQ Pro is already the most comprehensive testing and validation solution available today for network and inline devices. With its ease of use and extensive library of normal and threat traffic files the product can be used to easily create and replay simple or complex stateful testing scenarios to allow the validation of the configuration of inline network devices such as firewalls, IPS, routers, switches and other critical network systems in a controlled, repeatable and safe way.

Note: Traffic file updates are available to licensed users only.

This update includes the following traffic files:

Application Exploits 

ACDSee XPMHeaders Buffer Overflow (bind shell)
ACDSee XPMHeaders Buffer Overflow (exec)
Adobe Multiple products .PNG buffer overflow POC_1
Adobe Multiple products .PNG buffer overflow POC_2
HTTP Apple QuickTime Java toQTPointer() Code Execution
HTTP Apple QuickTime MOV File JVTCompEncodeFrame Heap Overflow
HTTP Blue Coat Systems K9 Web Protection Buffer Overflow
HTTP IBM Tivoli Provisioning Manager Stack Overflow
HTTP IE 7 navcancl.htm Cross-Site Scripting
HTTP IE HTML Objects Memory Corruption (MS07-027)
HTTP IE Speech API 4 COM Object Buffer Overflow (win2k)
HTTP McAfee On-Access Scanner Long Unicode File Name Overflow
HTTP MoviePlay LST File Handling Buffer Overflow
HTTP MS IE chtskdic.dll Remote Code Execution (MS07-027)
HTTP MS IE HTML Objects Script Errors Variant Code Execution
HTTP MS IE Property Method Remote Code Execution
HTTP MS VDT Database Designer VDT70.DLL ActiveX Overflow
HTTP NetSprint Toolbar ActiveX Denial of Service
HTTP Opera 9.2 torrent File Remote Denial of Service
HTTP QuickTime MP4 FlipFileTypeAtom_BtoN Integer Overflow
HTTP Winamp MP4 File Handling Memory Corruption (calc.exe)
HTTP Winamp MP4 File Handling Memory Corruption (shell)
HTTP Yahoo Messenger AudioConf ActiveX Overflow
HTTP Yahoo Webcam ActiveX Control (ywcvwr.dll) Buffer Overflow
HTTP Yahoo Webcam ActiveX Control Buffer Overflow
HTTP Zenturi ProgramChecker ActiveX DownloadFile File Download
IBM Tivoli Enterprise Portal Server Heap Overflow
IBM Tivoli Monitoring Express Monitoring Agent WinOS Heap Overflow
IBM Tivoli Monitoring Express Universal Agent Service Heap Overflow
LanDesk AOLSRVR.EXE Overflow (generic_shell_bind_tcp)
LanDesk AOLSRVR.EXE Overflow (windows_adduser)
LanDesk AOLSRVR.EXE Overflow (windows_exec)
LanDesk AOLSRVR.EXE Overflow (windows_shell_reverse_tcp)
MS Excel BIFF Record Code Execution (MS07-023)
MS Excel Filter Records Remote Code Execution
MS Windows UPnP Stack Overflow HTTP_Header_CALLBACK (MS07-019)
MS Windows UPnP Stack Overflow HTTP_Header_NT (MS07-019)
MS Windows UPnP Stack Overflow HTTP_Header_SID (MS07-019)
MS Windows UPnP Stack Overflow HTTP_Header_TIMEOUT (MS07-019)
MS Word Document Stream Code Execution (MS07-024)
MS Word Document Stream Code Execution POC_1 (MS07-024)
Novell Groupwise WebAccess GWINTER.EXE Overflow POC_1
Novell Groupwise WebAccess GWINTER.EXE Overflow POC_2
SUN-RPC CA BrightStor ArcServe Media Server Buffer Overflow
SUN-RPC CA BrightStor ARCserve RPC Request Buffer Overflow


Security Evasion Techniques 

Evasion DCERPC append multiple fake bind (CVE-2007-0169)
Evasion DCERPC maximum fragment size (CVE-2007-0169)
Evasion DCERPC multiple fake bind (CVE-2007-0169)
Evasion DCERPC prepend multiple fake bind (CVE-2007-0169)
Evasion DCERPC smb_pipeio_rw (CVE-2007-0169)
Evasion DCERPC smb_pipeio_trans (CVE-2007-0169)
 

Copyright Karalon 2004-2008 All rights reserved