20021021 AN HTTPD SOCKS4 username Buffer Overflow Vulnerabilitymailing list
http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0032.html CVE-2002-1930
AN HTTPD 1.38/1.39/1.40/1.41 - 'SOCKS4' Buffer Overflow
Record summary
CVE-2002-1930 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in AN HTTPd 1.38 through 1.4.1c allows remote attackers to execute arbitrary code via a SOCKS4 request with a long username.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAN HTTPD 1.38/1.39/1.40/1.41 - 'SOCKS4' Buffer OverflowExploitDB exploitby KanatokoNot analyzed1 file
References
4an-http-socks4-bo(10410)vdb entry
http://www.iss.net/security_center/static/10410.php 6012vdb entry
http://www.securityfocus.com/bid/6012 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-1930