Executive Summary
| Summary | |
|---|---|
| Title | Lighttpd: Buffer overflow |
| Informations | |||
|---|---|---|---|
| Name | GLSA-200709-16 | First vendor Publication | 2007-09-27 |
| Vendor | Gentoo | Last vendor Modification | 2007-09-27 |
| Severity (Vendor) | High | Revision | N/A |
Security-Database Scoring CVSS v2
| Cvss vector : (AV:N/AC:M/Au:N/C:P/I:P/A:P) | |||
|---|---|---|---|
| Cvss Base Score | 6.8 | Attack Range | Network |
| Cvss Impact Score | 6.4 | Attack Complexity | Medium |
| Cvss Expoit Score | 8.6 | Authentification | None Required |
| Calculate full CVSS 2.0 Vectors scores | |||
Detail
Synopsis Lighttpd is vulnerable to the remote execution of arbitrary code. Background Lighttpd is a lightweight HTTP web server. Description Mattias Bengtsson and Philip Olausson have discovered a buffer overflow vulnerability in the function fcgi_env_add() in the file mod_fastcgi.c when processing overly long HTTP headers. Impact A remote attacker could send a specially crafted request to the vulnerable Lighttpd server, resulting in the remote execution of arbitrary code with privileges of the user running the web server. Note that mod_fastcgi is disabled in Gentoo's default configuration. Workaround Edit the file /etc/lighttpd/lighttpd.conf and comment the following line: "include mod_fastcgi.conf" Resolution All Lighttpd users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=www-servers/lighttpd-1.4.18" References [ 1 ] CVE-2007-4727 : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4727 Availability This GLSA and any updates to it are available for viewing at the Gentoo Security Website: http://security.gentoo.org/glsa/glsa-200709-16.xml |
Original Source
| Url : http://security.gentoo.org/glsa/glsa-200709-16.xml |
CWE : Common Weakness Enumeration
| id | Name |
|---|---|
| CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
CPE : Common Platform Enumeration
| Type | Description | Count |
|---|---|---|
| Application | 1 |
Open Source Vulnerability Database (OSVDB)
| id | Description |
|---|---|
| 36933 | lighttpd mod_fastcgi HTTP Request Header Overflow |

GLSA-200709-16
(Critical)
(Medium)





