oss-sec mailing list archives

request CVE for weborf


From: Salvo Tomaselli <tiposchi () tiscali it>
Date: Fri, 28 Jan 2011 11:25:21 +0100

Greetings,

i am requesting a CVE for weborf http://galileo.dmi.unict.it/wiki/weborf/

weborf 0.12.5 fixes a DoS occurring with malformed fields in HTTP request.

Diff from previous version 0.12.4:

$ diff 0.12.4/utils.c 0.12.5/utils.c 
270a271,272
    val += param_len + 2; //Moves the begin of the string to exclude the 
name of the field

276d277
<     val += param_len + 2; //Moves the begin of the string to exclude the 
name of the field

Regards
-- 
Salvo Tomaselli

Attachment: signature.asc
Description: This is a digitally signed message part.


Current thread: