CVE-2012-5533

Published Nov 24, 2012

Last updated 7 years ago

Overview

Description
The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the "Connection: TE,,Keep-Alive" header.
Source
secalert@redhat.com
NVD status
Modified

Risk scores

CVSS 2.0

Type
Primary
Base score
5
Impact score
2.9
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:N/I:N/A:P

Weaknesses

nvd@nist.gov
CWE-399

Social media

Hype score
Not currently trending

Evaluator

Comment
-
Impact
Per: http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2012_01.txt " Affected versions ------------------- Only 1.4.31; on the other hand versions before 1.4.31 include the "invalid read" bug."
Solution
Per: http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2012_01.txt " Affected versions ------------------- Only 1.4.31; on the other hand versions before 1.4.31 include the "invalid read" bug."

Configurations