CVE-2003-0899

Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contain '<' or '>' characters, which trigger the overflow when the characters are expanded to "&lt;" and "&gt;" sequences.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:acme_labs:thttpd:2.21:*:*:*:*:*:*:*
cpe:2.3:a:acme_labs:thttpd:2.21b:*:*:*:*:*:*:*
cpe:2.3:a:acme_labs:thttpd:2.22:*:*:*:*:*:*:*
cpe:2.3:a:acme_labs:thttpd:2.23b1:*:*:*:*:*:*:*

Information

Published : 2003-11-03 05:00

Updated : 2017-07-11 01:29


NVD link : CVE-2003-0899

Mitre link : CVE-2003-0899


JSON object : View

Products Affected

acme_labs

  • thttpd
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer