CVE-2009-3663 Information

Description

Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the Host header.

Reference

http://httpdx.sourceforge.net/downloads/changelog.log http://osvdb.org/58129 http://secunia.com/advisories/36734 http://www.exploit-db.com/exploits/9657 http://www.vupen.com/english/advisories/2009/2654 https://exchange.xforce.ibmcloud.com/vulnerabilities/53205

Share on: