Описание
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2:1.12.13+real-8 |
| hardy | ignored | end of life |
| lucid | released | 1:1.12.13-12ubuntu1.10.04.1 |
| maverick | released | 1:1.12.13-12ubuntu1.10.10.1 |
| natty | released | 1:1.12.13-12ubuntu1.11.04.1 |
| oneiric | released | 2:1.12.13+real-6ubuntu0.1 |
| upstream | released | 2:1.12.13+real-7 |
Показывать по
EPSS
10 Critical
CVSS2
Связанные уязвимости
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
Heap-based buffer overflow in the proxy_connect function in src/client ...
Heap-based buffer overflow in the proxy_connect function in src/client.c in CVS 1.11 and 1.12 allows remote HTTP proxy servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP response.
EPSS
10 Critical
CVSS2