CVE Database
/

CVE-2008-7160

Back to search

CVE-2008-7160

Published: Sep 10, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

The silc_http_server_parse function in lib/silchttp/silchttpserver.c in the internal HTTP server in silcd in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.9 allows remote attackers to overwrite a stack location and possibly execute arbitrary code via a crafted Content-Length header, related to incorrect use of a %lu format string.

VendorProductVersions

n/a

n/a

affected
n/a

References

36625
third-party-advisory
x_refsource_SECUNIA
36194
vdb-entry
x_refsource_BID
36614
third-party-advisory
x_refsource_SECUNIA
DSA-1879
vendor-advisory
x_refsource_DEBIAN
SUSE-SR:2009:016
vendor-advisory
x_refsource_SUSE
MDVSA-2009:234
vendor-advisory
x_refsource_MANDRIVA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now