FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-11-23 17:01:17 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
76904dce-ccf3-11d8-babb-000854d03344Pavuk HTTP Location header overflow

When pavuk sends a request to a web server and the server sends back the HTTP status code 305 (Use Proxy), pavuk copies data from the HTTP Location header in an unsafe manner. This leads to a stack-based buffer overflow with control over EIP.


Discovery 2004-06-30
Entry 2004-07-03
pavuk
< 0.9.28_5

CVE-2004-0456
http://lists.netsys.com/pipermail/full-disclosure/2004-July/023322.html
http://www.osvdb.org/7319