[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.4] nginx: Integer overflow in nginx range filter module leading to memory disclosure (CVE-2017-7529)

ID: oval:org.secpod.oval:def:1800935Date: (C)2018-03-30   (M)2022-08-31
Class: PATCHFamily: unix




An integer overflow vulnerability in nginx range filter module in ngx_ function was found, potentially resulting in memory disclosure when used with 3rd party modules. Issue can be triggered by specially crafted http range request resulting into leaking the content of the cache file header. Affected versions nginx 0.5.6 - 1.13.2. Fixed In Version nginx 1.13.3, nginx 1.12.1

Platform:
Alpine Linux 3.4
Product:
ruby
Reference:
7522
CVE-2017-7529
CVE    1
CVE-2017-7529
CPE    2
cpe:/o:alpinelinux:alpine_linux:3.4
cpe:/a:ruby-lang:ruby

© SecPod Technologies