Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Apache mod_jk2 Host Header Multiple Stack Based Buffer Overflow Vulnerabilities

Apache mod_jk2 is prone to multiple stack-based buffer-overflow vulnerabilities because it fails to perform adequate boundary checks on user-supplied data before copying it to insufficiently sized buffers.

Successful exploits may allow attackers to execute arbitrary code in the context of a vulnerable application; failed attempts will likely cause denial-of-service conditions.

Versions prior to mod_jk2 2.0.4 are vulnerable.

NOTE: mod_jk2 is a legacy branch of mod_jk that is now deprecated; mod_jk is a currently supported module and is reportedly unaffected by these issues.







 

Privacy Statement
Copyright 2008, SecurityFocus