CVE-2001-1405 Information

Description

Bugzilla before 2.14 does not restrict access to sanitycheck.cgi which allows local users to cause a denial of service (CPU consumption) via a flood of requests to sanitycheck.cgi.

Reference

http://bugzilla.mozilla.org/show_bug.cgi?id=54556 http://marc.info/?l=bugtraq&m=99912899900567 http://www.redhat.com/support/errata/RHSA-2001-107.html

Share on: