[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251782

 
 

909

 
 

196543

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.7] nginx: Integer overflow in nginx range filter module leading to memory disclosure (CVE-2017-7529)

ID: oval:org.secpod.oval:def:1800607Date: (C)2018-03-29   (M)2023-12-20
Class: PATCHFamily: unix




An integer overflow vulnerability in nginx range filter module in ngx_ function was found, potentially resulting in memory disclosure when used with 3rd party modules. Issue can be triggered by specially crafted http range request resulting into leaking the content of the cache file header. Affected versions:¶ nginx 0.5.6 - 1.13.2. Fixed In Version:¶ nginx 1.13.3, nginx 1.12.1 Reference:¶ Patch:¶

Platform:
Alpine Linux 3.7
Product:
nginx
Reference:
7519
CVE-2017-7529
CVE    1
CVE-2017-7529
CPE    2
cpe:/a:igor_sysoev:nginx
cpe:/o:alpinelinux:alpine_linux:3.7

© SecPod Technologies