[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2019-11072 -- lighttpd

ID: oval:org.secpod.oval:def:1901921Date: (C)2019-06-19   (M)2024-04-17
Class: VULNERABILITYFamily: unix




lighttpd before 1.4.54 has a signed integer overflow, which might allow remote attackers to cause a denial of service or possibly have unspecified other impact via a malicious HTTP GET request, as demonstrated by mishandling of /%2F? in burl_normalize_2F_to_slash_fix in burl.c.

Platform:
Ubuntu 19.04
Product:
lighttpd
Reference:
CVE-2019-11072
CVE    1
CVE-2019-11072
CPE    2
cpe:/a:lighttpd:lighttpd
cpe:/o:ubuntu:ubuntu_linux:19.04

© SecPod Technologies