wwwwais.c Heap Overflow Vulnerability

A remote user supplying excess input (> 1024 characters) to a GET can cause a heap overflow.

This can permit an attacker to slow down the affected webserver, thereby denying service.

If the excess input is properly structured, it could also permit the remote attacker to execute arbitrary commands with the privilege level of the webserver user.


 

Privacy Statement
Copyright 2010, SecurityFocus