Skip to content

Instantly share code, notes, and snippets.

@0xHop
Created December 13, 2021 22:15
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save 0xHop/66609ec1e243b913361e1acfa5253806 to your computer and use it in GitHub Desktop.
Save 0xHop/66609ec1e243b913361e1acfa5253806 to your computer and use it in GitHub Desktop.
CVE 2000-0484 update
[description]
Small HTTP Server ver 3.06 contains a memory corruption bug causing a memory overflow. The overflowed buffer crashes into a Structured Exception Handler resulting in a Denial of Service.
------------------------------------------
[VulnerabilityType Other]
Denial of Service
------------------------------------------
[Vendor of Product]
smallsrv
------------------------------------------
[Affected Product Code Base]
Small HTTP Server 3.06
------------------------------------------
[Affected Component]
HTTP engine
------------------------------------------
[Attack Type]
Remote
------------------------------------------
[Impact Code execution]
False
------------------------------------------
[Impact Escalation of Privileges]
False
------------------------------------------
[Impact Information Disclosure]
False
------------------------------------------
[Attack Vectors]
Attacker can send a long HTTP GET request and trigger a memory corruption bug to trigger a Denial of Service
------------------------------------------
[Reference]
https://smallsrv.com/
------------------------------------------
[Has vendor confirmed or acknowledged the vulnerability?]
false
------------------------------------------
[CVE]
CVE-2000-0484
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment