FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2011-4362

This CVE name corresponds to:

Entered Topic
2011-12-28 lighttpd -- remote DoS in HTTP authentication

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2011-4362
Phase Assigned(20111104)

Description

Integer signedness error in the base64_decode function in the HTTP authentication functionality (http_auth.c) in lighttpd 1.4 before 1.4.30 and 1.5 before SVN revision 2806 allows remote attackers to cause a denial of service (segmentation fault) via crafted base64 input that triggers an out-of-bounds read with a negative index.

References

Source Reference
BUGTRAQ 20111224 Lighttpd Proof of Concept code for CVE-2011-4362
EXPLOIT-DB 18295
MLIST [oss-security] 20111129 CVE Request: lighttpd/mod_auth out-of-bounds read due to signedness error
MLIST [oss-security] 20111129 Re: CVE Request: lighttpd/mod_auth out-of-bounds read due to signedness error
MISC http://blog.pi3.com.pl/?p=277
CONFIRM http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2011_01.txt
CONFIRM http://redmine.lighttpd.net/issues/2370
CONFIRM https://bugzilla.redhat.com/show_bug.cgi?id=758624
DEBIAN DSA-2368
SECTRACK 1026359
SECUNIA 47260
XF lighttpd-base64-dos(71536)