PT-2004-1025 · Nd · Nd

Publicado

2004-01-08

·

Atualizado

2017-07-11

·

CVE-2004-0014

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions nd versions 0.8.2 and earlier
Description The issue concerns multiple buffer overflows in the nd WebDAV interface, which can be exploited remotely by web servers to execute arbitrary code via certain long strings. This can lead to a breach of confidentiality, integrity, and availability of protected information.
Recommendations For versions 0.8.2 and earlier, consider disabling the WebDAV interface until a patch is available to prevent remote exploitation. Restrict access to the nd package to minimize the risk of exploitation. Avoid using long strings in the WebDAV interface until the issue is resolved.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-03110
CVE-2004-0014
DSA-412

Produtos afetados

Nd