CVE-2017-7529
Summary
| CVE | CVE-2017-7529 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-07-13 13:29:00 UTC |
| Updated | 2022-01-24 16:46:00 UTC |
| Description | Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Full Disclosure: APPLE-SA-2021-09-20-4 Xcode 13 |
FULLDISC |
seclists.org |
|
| nginx Range Filter Flaw Lets Remote Users Obtain Potentially Sensitive Information on the Target System - SecurityTracker |
SECTRACK |
www.securitytracker.com |
Third Party Advisory, VDB Entry |
| [nginx-announce] nginx security advisory (CVE-2017-7529) |
MLIST |
mailman.nginx.org |
Vendor Advisory |
| About the security content of Xcode 13 - Apple Support |
CONFIRM |
support.apple.com |
|
| CVE-2017-7529 - Integer overflow in nginx | Puppet.com |
CONFIRM |
puppet.com |
Third Party Advisory |
| Nginx CVE-2017-7529 Remote Integer Overflow Vulnerability |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 375873 Apple Xcode Prior to 13 Vulnerability (HT212818)
- 500425 Alpine Linux Security Update for nginx
- 504184 Alpine Linux Security Update for nginx