First published: Fri May 06 2005(Updated: )
Heap-based buffer overflow in RSA SecurID Web Agent 5, 5.2, and 5.3 allows remote attackers to execute arbitrary code via crafted chunked-encoding data.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RSA SecurID Web Agent | =5.2 | |
RSA SecurID Web Agent | =5 | |
RSA SecurID Web Agent | =5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1471 has a high severity rating due to the potential for remote code execution.
To fix CVE-2005-1471, upgrade the RSA SecurID Web Agent to the latest version that does not contain this vulnerability.
CVE-2005-1471 affects RSA SecurID Web Agent versions 5.0, 5.2, and 5.3.
Yes, CVE-2005-1471 can be exploited remotely by attackers sending crafted chunked-encoding data.
CVE-2005-1471 is classified as a heap-based buffer overflow vulnerability.