CVE-2008-4298
CVE-2008-4298
Memory leak in the http_request_parse function in request.c in lighttpd before 1.4.20 allows remote attackers to cause a denial of service (memory consumption) via a large number of requests with duplicate request headers.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://bugs.gentoo.org/show_bug.cgi?id=238180http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.htmlhttp://secunia.com/advisories/32069http://secunia.com/advisories/32132http://secunia.com/advisories/32480http://secunia.com/advisories/32834http://secunia.com/advisories/32972http://security.gentoo.org/glsa/glsa-200812-04.xmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/45471http://trac.lighttpd.net/trac/changeset/2305http://trac.lighttpd.net/trac/ticket/1774http://wiki.rpath.com/Advisories:rPSA-2008-0309