iPlanet Web Publisher远程缓冲区溢出漏洞

漏洞信息详情

iPlanet Web Publisher远程缓冲区溢出漏洞

漏洞简介

iPlanet Web Server Enterprise Edition 4.1版本及之前版本的Web Publisher存在缓冲区溢出漏洞。远程攻击者可以借助带有(1)GETPROPERTIES、(2)GETATTRIBUTENAMES或其他方法的超长URI的请求导致服务拒绝并且可能执行任意代码。

漏洞公告

iPlanet has made a NSAPI patch available.
This issue will also be addressed by the release of iPlanet Web Server, Enterprise Edition version 4.1 Service Pack 8.
HP VirtualVault 4.0

iPlanet E-Commerce Solutions iPlanet Web Server Enterprise Edition 4.1 SP3

iPlanet E-Commerce Solutions iPlanet Web Server Enterprise Edition 4.1 SP6

iPlanet E-Commerce Solutions iPlanet Web Server Enterprise Edition 4.1 SP5

iPlanet E-Commerce Solutions iPlanet Web Server Enterprise Edition 4.1 SP7

iPlanet E-Commerce Solutions iPlanet Web Server Enterprise Edition 4.1 SP4

参考网址

来源: XF
名称: netscape-enterprise-uri-bo(6554)
链接:http://xforce.iss.net/static/6554.php

来源: BID
名称: 2732
链接:http://www.securityfocus.com/bid/2732

来源: iplanet.com
链接:http://iplanet.com/products/iplanet_web_enterprise/iwsalert5.11.html

来源: BUGTRAQ
名称: 20010515 iPlanet – Netscape Enterprise Web Publisher Buffer Overflow
链接:http://archives.neohapsis.com/archives/bugtraq/2001-05/0132.html

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享