Andrew Bishop WWWOFFLE Negative Content-Length Buffer Overflow Vulnerability
BID:5260
Info
Andrew Bishop WWWOFFLE Negative Content-Length Buffer Overflow Vulnerability
| Bugtraq ID: | 5260 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 18 2002 12:00AM |
| Updated: | Jul 18 2002 12:00AM |
| Credit: | Discovery credited to qitest1 <[email protected]>. |
| Vulnerable: |
Andrew Bishop WWWOFFLE 2.7 b Andrew Bishop WWWOFFLE 2.7 a Andrew Bishop WWWOFFLE 2.7 Andrew Bishop WWWOFFLE 2.6 d Andrew Bishop WWWOFFLE 2.6 b Andrew Bishop WWWOFFLE 2.6 |
| Not Vulnerable: |
Andrew Bishop WWWOFFLE 2.7 c |
Discussion
Andrew Bishop WWWOFFLE Negative Content-Length Buffer Overflow Vulnerability
A buffer overflow vulnerability has been reported for version 2.7b of WWWOFFLE. Reportedly, when wwwoffled receives a negative value for the Content-Length of a response, it will crash while trying to allocate memory.
A malicious web server may misrepresent the Content-length of a response, and will cause wwwoffle to crash. Remote execution of arbitrary code may be possible.
A buffer overflow vulnerability has been reported for version 2.7b of WWWOFFLE. Reportedly, when wwwoffled receives a negative value for the Content-Length of a response, it will crash while trying to allocate memory.
A malicious web server may misrepresent the Content-length of a response, and will cause wwwoffle to crash. Remote execution of arbitrary code may be possible.