CVE-2005-1471: Buffer Overflow
Published May 6, 2005
·Updated
Heap-based buffer overflow in RSA SecurID Web Agent 5, 5.2, and 5.3 allows remote attackers to execute arbitrary code via crafted chunked-encoding data.
Affected Software
3 affected components
RSA SecurID Web Agent=5
RSA SecurID Web Agent=5.2
RSA SecurID Web Agent=5.3
Event History
May 6, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1471?
CVE-2005-1471 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2005-1471?
To fix CVE-2005-1471, upgrade the RSA SecurID Web Agent to the latest version that does not contain this vulnerability.
3
What software versions are affected by CVE-2005-1471?
CVE-2005-1471 affects RSA SecurID Web Agent versions 5.0, 5.2, and 5.3.
4
Can CVE-2005-1471 be exploited remotely?
Yes, CVE-2005-1471 can be exploited remotely by attackers sending crafted chunked-encoding data.
5
What kind of vulnerability is CVE-2005-1471?
CVE-2005-1471 is classified as a heap-based buffer overflow vulnerability.