CVE-2010-1766

Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r56380, as used in Qt and other products, allows remote websockets servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an upgrade header that is long and invalid.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:digia:qt:*:*:*:*:*:*:*:*
cpe:2.3:a:webkit:webkit:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-07-22 05:42

Updated : 2024-02-04 17:54


NVD link : CVE-2010-1766

Mitre link : CVE-2010-1766

CVE.ORG link : CVE-2010-1766


JSON object : View

Products Affected

digia

  • qt

webkit

  • webkit
CWE
CWE-189

Numeric Errors