Apache HTPasswd Password Command Line Argument Buffer Overflow Vulnerability
BID:13778
Info
Apache HTPasswd Password Command Line Argument Buffer Overflow Vulnerability
| Bugtraq ID: | 13778 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 16 2004 12:00AM |
| Updated: | Sep 16 2004 12:00AM |
| Credit: | Vulnerability discovery credited to André Malo (ndperlig.de). |
| Vulnerable: |
Ubuntu Ubuntu Linux 5.0 4 powerpc Ubuntu Ubuntu Linux 5.0 4 i386 Ubuntu Ubuntu Linux 5.0 4 amd64 Ubuntu Ubuntu Linux 4.1 ppc Ubuntu Ubuntu Linux 4.1 ia64 Ubuntu Ubuntu Linux 4.1 ia32 Apache Apache 1.3.27 Apache Apache 1.3.26 Apache Apache 1.3.25 Apache Apache 1.3.24 Apache Apache 1.3.23 Apache Apache 1.3.22 Apache Apache 1.3.20 Apache Apache 1.3.19 Apache Apache 1.3.18 Apache Apache 1.3.17 Apache Apache 1.3.14 Apache Apache 1.3.12 Apache Apache 1.3.11 Apache Apache 1.3.9 Apache Apache 1.3.6 Apache Apache 1.3.4 Apache Apache 1.3.3 Apache Apache 1.3.1 Apache Apache 1.3 |
| Not Vulnerable: | |
Discussion
Apache HTPasswd Password Command Line Argument Buffer Overflow Vulnerability
A buffer overflow vulnerability exists in the htpasswd utility included with Apache. The vulnerability is due to improper bounds checking when copying user-supplied 'password' data into local buffers.
Since the program is not setuid, this vulnerability does not have a local impact. However, this may be an issue if the software is called from a CGI script. An attacker may be able to supply malformed data to the program which will cause the overflow to occur.
A buffer overflow vulnerability exists in the htpasswd utility included with Apache. The vulnerability is due to improper bounds checking when copying user-supplied 'password' data into local buffers.
Since the program is not setuid, this vulnerability does not have a local impact. However, this may be an issue if the software is called from a CGI script. An attacker may be able to supply malformed data to the program which will cause the overflow to occur.
Exploit / POC
Apache HTPasswd Password Command Line Argument Buffer Overflow Vulnerability
Currently we are not aware of any exploits for the buffer overflow issues. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for the buffer overflow issues. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Apache HTPasswd Password Command Line Argument Buffer Overflow Vulnerability
Solution:
Ubuntu has released an advisory (USN-133-1) and fixes to address this and another issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Ubuntu has released an advisory (USN-133-1) and fixes to address this and another issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Apache HTPasswd Password Command Line Argument Buffer Overflow Vulnerability
References:
References:
- Re: local buffer overflow in htpasswd for apache 1.3.31 not fixed in .33? (André Malo (ndperlig.de))