Description
Buffer overflow in the Log function in util.c in GazTek ghttpd 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long HTTP GET request.
Exploits
References
cve@mitre.org
http://online.securityfocus.com/archive/1/295141cve@mitre.org
http://www.iss.net/security_center/static/10361.phpcve@mitre.org
http://www.securityfocus.com/bid/5960af854a3a-2127-422b-91ae-364da2661108
http://lynorics.sundawn.net/prog/ghttpd.html#versionenaf854a3a-2127-422b-91ae-364da2661108
http://online.securityfocus.com/archive/1/295141af854a3a-2127-422b-91ae-364da2661108
http://www.iss.net/security_center/static/10361.phpaf854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/5960