Required CVE Record Information
Description
Heap-based buffer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB before 1.3.8 might allow remote attackers to execute arbitrary code via a Content-Length HTTP header that specifies a value too small for the amount of POST data, aka bug #3001896.
References 5 Total
- http://sblim.cvs.sourceforge.net/viewvc/sblim/sfcb/httpAdapter.c?r1=1.84&r2=1.85
- http://sourceforge.net/tracker/index.php?func=detail&aid=3001896&group_id=128809&atid=712784
- secunia.com: 40018 third-party-advisory
- vupen.com: ADV-2010-1312 vdb-entry
- marc.info: [oss-security] 20100601 SFCB vulnerabilities mailing-list
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- http://sblim.cvs.sourceforge.net/viewvc/sblim/sfcb/httpAdapter.c?r1=1.84&r2=1.85 x_transferred
- http://sourceforge.net/tracker/index.php?func=detail&aid=3001896&group_id=128809&atid=712784 x_transferred
- secunia.com: 40018 third-party-advisoryx_transferred
- vupen.com: ADV-2010-1312 vdb-entryx_transferred
- marc.info: [oss-security] 20100601 SFCB vulnerabilities mailing-listx_transferred