Pound: buffer overflow
| Package(s): | pound | CVE #(s): | CVE-2005-1391 | ||||
| Created: | May 2, 2005 | Updated: | January 10, 2006 | ||||
| Description: | Steven Van Acker has discovered a buffer overflow vulnerability in the "add_port()" function in Pound 1.8.2+. A remote attacker could send a request for an overly long hostname parameter, which could lead to the remote execution of arbitrary code with the rights of the Pound daemon process. | ||||||
| Alerts: |
| ||||||
