CVE Vulnerabilities

CVE-2010-2054

Published: Jun 15, 2010 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu

Integer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB 1.3.4 through 1.3.7, when the configuration sets httpMaxContentLength to a zero value, allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via a large integer in the Content-Length HTTP header, aka bug #3001915. NOTE: some of these details are obtained from third party information.

Affected Software

Name Vendor Start Version End Version
Sblim-sfcb Standards_based_linux_instrumentation 1.3.4 (including) 1.3.4 (including)
Sblim-sfcb Standards_based_linux_instrumentation 1.3.5 (including) 1.3.5 (including)
Sblim-sfcb Standards_based_linux_instrumentation 1.3.6 (including) 1.3.6 (including)
Sblim-sfcb Standards_based_linux_instrumentation 1.3.7 (including) 1.3.7 (including)

References