LWN.net Logo

ntop: denial of service

Package(s):ntop CVE #(s):CVE-2009-2732
Created:September 14, 2010 Updated:September 15, 2010
Description: From the Mandriva advisory:

The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an Authorization HTTP header that lacks a : (colon) character in the base64-decoded string.

Alerts:
Mandriva MDVSA-2010:181 2010-09-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds