20010117 [pkc] remote heap overflow in tinyproxymailing list
http://marc.info/?l=bugtraq&m=97975486527750&w=2 CVE-2001-0129
tinyproxy tinyproxy 1.3.2/1.3.3 - Remote Heap Overflow
Record summary
CVE-2001-0129 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long connect request.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBtinyproxy tinyproxy 1.3.2/1.3.3 - Remote Heap OverflowExploitDB exploitby CyRaXNot analyzed1 file
References
5DSA-018Vendor advisory
http://www.debian.org/security/2001/dsa-018 2217vdb entry
http://www.securityfocus.com/bid/2217 tinyproxy-remote-bo(5954)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5954 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0129