Описание
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 2:1.12.13+real-8 |
hardy | ignored | end of life |
lucid | released | 1:1.12.13-12ubuntu1.10.04.1 |
maverick | released | 1:1.12.13-12ubuntu1.10.10.1 |
natty | released | 1:1.12.13-12ubuntu1.11.04.1 |
oneiric | released | 2:1.12.13+real-6ubuntu0.1 |
upstream | released | 2:1.12.13+real-7 |
Показывать по
EPSS
10 Critical
CVSS2
Связанные уязвимости
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
Heap-based buffer overflow in the proxy_connect function in src/client ...
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
EPSS
10 Critical
CVSS2