Tomahawk Technologies SteelArrow Chunked Transfer Encoding Heap Overflow Vulnerability
BID:5496
Info
Tomahawk Technologies SteelArrow Chunked Transfer Encoding Heap Overflow Vulnerability
| Bugtraq ID: | 5496 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2002-1441 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 19 2002 12:00AM |
| Updated: | Jul 11 2009 03:56PM |
| Credit: | Discovery credited to Mark Litchfield of "NGSSoftware Insight Security Research" <[email protected]>. |
| Vulnerable: |
Tomahawk Technologies SteelArrow Web Application Server 4.1 |
| Not Vulnerable: | |
Discussion
Tomahawk Technologies SteelArrow Chunked Transfer Encoding Heap Overflow Vulnerability
A heap overflow vulnerability has been reported for SteelArrow when handling chunked encoded transfers. The HTTP protocol specifies a method of data encoding called 'Chunked Encoding', designed to facilitate fragmentation of HTTP requests in transit. When processing requests for .ARO files coded with the 'Chunked Encoding' mechanism, SteelArrow fails to properly calculate required buffer sizes.
A heap overflow vulnerability has been reported for SteelArrow when handling chunked encoded transfers. The HTTP protocol specifies a method of data encoding called 'Chunked Encoding', designed to facilitate fragmentation of HTTP requests in transit. When processing requests for .ARO files coded with the 'Chunked Encoding' mechanism, SteelArrow fails to properly calculate required buffer sizes.
Exploit / POC
Tomahawk Technologies SteelArrow Chunked Transfer Encoding Heap Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Tomahawk Technologies SteelArrow Chunked Transfer Encoding Heap Overflow Vulnerability
Solution:
It has been reported that a vendor update is available, however Symantec has been unable to verify this. Customers may wish to contact the vendor for upgrade information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It has been reported that a vendor update is available, however Symantec has been unable to verify this. Customers may wish to contact the vendor for upgrade information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Tomahawk Technologies SteelArrow Chunked Transfer Encoding Heap Overflow Vulnerability
References:
References:
- Steel Arrow Home Page (Tomahawk Technologies)