Off-by-one buffer overflow in the sock_gets function in sockhelp.c for ATPhttpd 0.4b and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/5956 | patch exploit vdb entry third party advisory broken link |
http://secunia.com/advisories/7293 | broken link third party advisory vendor advisory |
http://archives.neohapsis.com/archives/bugtraq/2002-10/0187.html | mailing list exploit broken link vendor advisory |
http://www.iss.net/security_center/static/10362.php | vdb entry broken link |