sockethandler.cpp in HTTP Antivirus Proxy (HAVP) 0.88 allows remote attackers to cause a denial of service (hang) by connecting to a non-responsive server, which triggers an infinite loop due to an uninitialized variable.
References
| Link | Resource |
|---|---|
| https://sourceforge.net/mailarchive/message.php?msg_name=487CDF51.5060201%40endian.com | Broken Link Patch |
| http://www.server-side.de/index.htm | Product |
| http://secunia.com/advisories/31971 | Broken Link |
| http://www.gentoo.org/security/en/glsa/glsa-200809-11.xml | Third Party Advisory |
| http://www.securitytracker.com/id?1020900 | Broken Link Third Party Advisory VDB Entry |
| http://www.securityfocus.com/bid/30697 | Broken Link Third Party Advisory VDB Entry |
| http://secunia.com/advisories/31494 | Broken Link |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/44467 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2008-08-14 22:41
Updated : 2023-12-22 18:36
NVD link : CVE-2008-3688
Mitre link : CVE-2008-3688
JSON object : View
Products Affected
havp
- http_antivirus_proxy
CWE
CWE-908
Use of Uninitialized Resource
