Apache chunked encoding buffer overflow
Added: 05/08/2006CVE: CVE-2002-0392
BID: 5033
OSVDB: 838
![]() |
|
![]() |
|
Apache chunked encoding buffer overflowAdded: 05/08/2006CVE: CVE-2002-0392 BID: 5033 OSVDB: 838 BackgroundApache web servers support chunked encoding, which is used by a web client to send data to the server in parts, or chunks.ProblemA flaw in the calculation of the size of chunked encoding leads to a buffer overflow, allowing remote command execution.ResolutionUpgrade to the latest version of Apache.Referenceshttp://www.cert.org/advisories/CA-2002-17.htmlLimitationsDue to the nature of this vulnerability, this exploit may not always be reliable.PlatformsWindows |