Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3h4-v8x5-4h4j

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an Authorization HTTP header that lacks a : (colon) character in the base64-decoded string.

The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an Authorization HTTP header that lacks a : (colon) character in the base64-decoded string.

EPSS

Процентиль: 89%
0.05006
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 16 лет назад

The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an Authorization HTTP header that lacks a : (colon) character in the base64-decoded string.

redhat
больше 16 лет назад

The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an Authorization HTTP header that lacks a : (colon) character in the base64-decoded string.

nvd
больше 16 лет назад

The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an Authorization HTTP header that lacks a : (colon) character in the base64-decoded string.

debian
больше 16 лет назад

The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier al ...

EPSS

Процентиль: 89%
0.05006
Низкий

Дефекты

CWE-119