[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.5] libsoup: Stack based buffer overflow with HTTP Chunked Encoding (CVE-2017-2885)

ID: oval:org.secpod.oval:def:1800406Date: (C)2018-03-28   (M)2023-12-20
Class: PATCHFamily: unix




An exploitable stack based buffer overflow vulnerability exists in the GNOME libsoup 2.58. A specially crafted HTTP request can cause a stack overflow resulting in remote code execution. An attacker can send a special HTTP request to the vulnerable server to trigger this vulnerability. Fixed In Version libsoup 2.59.90.1, libsoup 2.58.2, libsoup 2.56.1

Platform:
Alpine Linux 3.5
Product:
libsoup
Reference:
7678
CVE-2017-2885
CVE    1
CVE-2017-2885
CPE    2
cpe:/a:libsoup:libsoup
cpe:/o:alpinelinux:alpine_linux:3.5

© SecPod Technologies