Buffer overflow in ISS BlackICE Defender 2.9 and earlier, BlackICE Agent 3.0 and 3.1, and RealSecure Server Sensor 6.0.1 and 6.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a flood of large ICMP ping packets.
| Software | From | Fixed in |
|---|---|---|
| iss / blackice_agent | 3.1 | 3.1.x |
| iss / blackice_agent | 3.0 | 3.0.x |
| iss / blackice_defender | 2.9caq | 2.9caq.x |
| iss / realsecure_server_sensor | 6.0.1 | 6.0.1.x |
| iss / realsecure_server_sensor | 6.5 | 6.5.x |
| iss / blackice_defender | 2.9 | 2.9.x |
| iss / blackice_defender | 2.9cap | 2.9cap.x |