O’Reilly WebSite GET缓冲区溢出漏洞

漏洞信息详情

O’Reilly WebSite GET缓冲区溢出漏洞

漏洞简介

O\’\’Reilly WebSite Professional web server 2.4版本及之前版本存在缓冲区溢出漏洞。远程攻击者可以借助超长GET请求或Referrer标题来执行任意命令。

漏洞公告

Upgrade to version 2.5 of the software.
OReilly Software WebSite Professional 2.3.18

OReilly Software WebSite Professional 2.4

OReilly Software WebSite Professional 2.4.9

参考网址

来源: BID
名称: 1492
链接:http://www.securityfocus.com/bid/1492

来源: NTBUGTRAQ
名称: 20000719 Alert: Buffer Overrun is O’Reilly WebsitePro httpd32.exe (CISADV000717)
链接:http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0007&L=ntbugtraq&F=&S=&P=5946

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享