First published: Tue Dec 31 2002(Updated: )
Off-by-one error in alterMIME 0.1.10 and 0.1.11 allows remote attackers to cause a denial of service (crash) via an x-header that causes snprintf overwrite the FFGET_FILE variable with a (null) byte.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Paul L Daniels Altermime | =0.1.11 | |
Paul L Daniels Altermime | =0.1.10 | |
Pldaniels Altermime | =0.1.10 | |
Pldaniels Altermime | =0.1.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.