CVE-2002-1904

Buffer overflow in the Log function in util.c in GazTek ghttpd 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long HTTP GET request.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gaztek:ghttpd:1.4:*:*:*:*:*:*:*
cpe:2.3:a:gaztek:ghttpd:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:gaztek:ghttpd:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:gaztek:ghttpd:1.4.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:42

Type Values Removed Values Added
References () http://lynorics.sundawn.net/prog/ghttpd.html#versionen - Patch () http://lynorics.sundawn.net/prog/ghttpd.html#versionen - Patch
References () http://online.securityfocus.com/archive/1/295141 - () http://online.securityfocus.com/archive/1/295141 -
References () http://www.iss.net/security_center/static/10361.php - () http://www.iss.net/security_center/static/10361.php -
References () http://www.securityfocus.com/bid/5960 - Exploit, Patch () http://www.securityfocus.com/bid/5960 - Exploit, Patch

Information

Published : 2002-12-31 05:00

Updated : 2025-04-03 01:03


NVD link : CVE-2002-1904

Mitre link : CVE-2002-1904

CVE.ORG link : CVE-2002-1904


JSON object : View

Products Affected

gaztek

  • ghttpd