ATP httpd Single Byte Buffer Overflow Vulnerability
BID:5956
Info
ATP httpd Single Byte Buffer Overflow Vulnerability
| Bugtraq ID: | 5956 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 14 2002 12:00AM |
| Updated: | Oct 14 2002 12:00AM |
| Credit: | Discovered by thread of Pyramid Research. |
| Vulnerable: |
Yann Ramin ATPhttpd 0.4 b Yann Ramin ATPhttpd 0.4 |
| Not Vulnerable: | |
Discussion
ATP httpd Single Byte Buffer Overflow Vulnerability
ATP httpd is a lightweight HTTP server. A vulnerability has been reported in ATP httpd that may result in compromise of root access to remote attackers. It is possible to overwrite the least significant byte of the saved base pointer with a NULL if a string of maximum length is transmitted to the server. This creates a potentially exploitable condition if the saved base pointer is corrupted such that it points to attacker-controlled memory.
ATP httpd is a lightweight HTTP server. A vulnerability has been reported in ATP httpd that may result in compromise of root access to remote attackers. It is possible to overwrite the least significant byte of the saved base pointer with a NULL if a string of maximum length is transmitted to the server. This creates a potentially exploitable condition if the saved base pointer is corrupted such that it points to attacker-controlled memory.
Exploit / POC
ATP httpd Single Byte Buffer Overflow Vulnerability
An exploit is available:
An exploit is available:
Solution / Fix
ATP httpd Single Byte Buffer Overflow Vulnerability
Solution:
An unofficial source code patch has been made available. It has not been verified or tested by Symantec.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Yann Ramin ATPhttpd 0.4 b
Solution:
An unofficial source code patch has been made available. It has not been verified or tested by Symantec.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Yann Ramin ATPhttpd 0.4 b
-
Pyramid Research atphttpd.patch
Unofficial source code patch.
http://downloads.securityfocus.com/vulnerabilities/patches/atphttpd.pa tch
References
ATP httpd Single Byte Buffer Overflow Vulnerability
References:
References: