CGIC CGICookieString Buffer Overflow Vulnerability
BID:7374
Info
CGIC CGICookieString Buffer Overflow Vulnerability
| Bugtraq ID: | 7374 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 15 2003 12:00AM |
| Updated: | Apr 15 2003 12:00AM |
| Credit: | Discovery of this issue is credited to Nicolas Tomadakis. |
| Vulnerable: |
Thomas Boutell cgic 2.0.1 Thomas Boutell cgic 2.0 |
| Not Vulnerable: |
Thomas Boutell cgic 2.0.2 |
Discussion
CGIC CGICookieString Buffer Overflow Vulnerability
Due to insufficient bounds checking of client-supplied cookie header data, it may be possible to corrupt sensitive regions of memory on a host using cgic. Exploitation may be dependent on the web server implementation.
Due to insufficient bounds checking of client-supplied cookie header data, it may be possible to corrupt sensitive regions of memory on a host using cgic. Exploitation may be dependent on the web server implementation.
Exploit / POC
CGIC CGICookieString Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
CGIC CGICookieString Buffer Overflow Vulnerability
Solution:
This issue has been addressed in cgic 2.0.2.
Thomas Boutell cgic 2.0
Thomas Boutell cgic 2.0.1
Solution:
This issue has been addressed in cgic 2.0.2.
Thomas Boutell cgic 2.0
-
Thomas Boutell cgic202.tar.gz
http://www.boutell.com/cgic/cgic202.tar.gz
Thomas Boutell cgic 2.0.1
-
Thomas Boutell cgic202.tar.gz
http://www.boutell.com/cgic/cgic202.tar.gz