Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-5533

Опубликовано: 24 нояб. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 5

Описание

The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the "Connection: TE,,Keep-Alive" header.

РелизСтатусПримечание
devel

not-affected

1.4.28-2ubuntu4
hardy

not-affected

1.4.19-0ubuntu3.1
lucid

not-affected

1.4.26-1.1ubuntu3.1
oneiric

not-affected

1.4.28-2ubuntu2.1
precise

not-affected

1.4.28-2ubuntu4
quantal

not-affected

1.4.28-2ubuntu4
upstream

released

1.4.31-2

Показывать по

5 Medium

CVSS2

Связанные уязвимости

nvd
около 13 лет назад

The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the "Connection: TE,,Keep-Alive" header.

debian
около 13 лет назад

The http_request_split_value function in request.c in lighttpd before ...

github
больше 3 лет назад

The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the "Connection: TE,,Keep-Alive" header.

5 Medium

CVSS2