CVE-2008-0983
Published Feb 26, 2008
Last updated 6 years ago
Overview
- Description
- lighttpd 1.4.18, and possibly other versions before 1.5.0, does not properly calculate the size of a file descriptor array, which allows remote attackers to cause a denial of service (crash) via a large number of connections, which triggers an out-of-bounds access.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-399
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B4F8F89B-5A10-4EE3-A035-1CEA44B1691A" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F89FCD49-0C73-4E73-9D99-38700B622A06" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FFA9AF51-F423-4167-88AB-5BF916BCC273" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A21B3F82-1C1D-46EE-92EF-46F7F590957E" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "482312DE-D483-42EC-B8B3-C71CE088C7B2" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D5549E74-A7A7-4D99-B08B-C6ACFB3917FD" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "72ABD4D8-8AD9-45E5-8FF5-FA947AC07F49" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0EC04CE1-4C31-42B7-A92D-38393F549014" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F79EED03-A95B-4636-A0AA-1F9E72DEF930" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "176D53A7-A81C-4C1F-A7B8-90604A9545F8" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8372FF7B-CF9B-4963-AB53-704E87AF3540" }, { "criteria": "cpe:2.3:a:lighttpd:lighttpd:1.4.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DA46E89A-565E-439D-BCB2-6CEE44EFDFAC" } ], "operator": "OR" } ] } ]