CVE-2001-0129: Buffer Overflow
Published Mar 12, 2001
·Updated
Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long connect request.
Affected Software
2 affected components
tinyproxy tinyproxy=1.3.3
tinyproxy tinyproxy<=1.3.2
Remediation
Patch Available
Patch Available
Event History
Mar 12, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0129?
CVE-2001-0129 has a high severity rating due to its potential to allow remote code execution and cause denial of service.
2
How do I fix CVE-2001-0129?
To fix CVE-2001-0129, upgrade Tinyproxy to version 1.3.4 or later, as this vulnerability is addressed in that release.
3
What specific versions of Tinyproxy are affected by CVE-2001-0129?
CVE-2001-0129 affects Tinyproxy versions 1.3.3 and earlier.
4
Can CVE-2001-0129 lead to remote code execution?
Yes, CVE-2001-0129 allows remote attackers to potentially execute arbitrary commands due to a buffer overflow.
5
What type of attack is possible with CVE-2001-0129?
CVE-2001-0129 can be exploited to perform denial of service attacks as well as potentially executing malicious code.