CVE-2004-1168: Buffer Overflow
Published Dec 10, 2004
·Updated
Stack-based buffer overflow in the WebDav handler in MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to execute arbitrary code via a long Overwrite header.
Affected Software
7 affected components
MySQL MaxDB=7.5.00.18
MySQL MaxDB=7.5.00.15
MySQL MaxDB=7.5.00.12
MySQL MaxDB=7.5.00.16
MySQL MaxDB=7.5.00.14
MySQL MaxDB=7.5.00.11
MySQL MaxDB=7.5.00.08
Event History
Dec 10, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1168?
CVE-2004-1168 has a critical severity rating due to the potential for remote code execution.
2
How do I fix CVE-2004-1168?
To mitigate CVE-2004-1168, upgrade to a version of MaxDB WebTools later than 7.5.00.18.
3
What systems are affected by CVE-2004-1168?
CVE-2004-1168 affects MaxDB versions 7.5.00.11 and earlier.
4
Can CVE-2004-1168 be exploited remotely?
Yes, CVE-2004-1168 can be exploited remotely by sending a specially crafted Overwrite header.
5
What type of vulnerability is CVE-2004-1168?
CVE-2004-1168 is a stack-based buffer overflow vulnerability.