First published: Sat Dec 31 2005(Updated: )
Buffer overflow in BlueCoat (a) WinProxy before 6.1a and (b) the web console access functionality in ProxyAV before 2.4.2.3 allows remote attackers to execute arbitrary code via a long Host: header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bluecoat ProxySG | =5.0-r1c | |
Bluecoat ProxySG | =4.0-r1h | |
Bluecoat ProxySG | =5.0-r1b | |
Bluecoat ProxySG | =4.0-r1e | |
Bluecoat ProxySG | =4.0-r1b | |
Bluecoat ProxySG | =4.0-r1a | |
Bluecoat ProxySG | =5.2-r1a | |
Bluecoat ProxySG | =4.0-r1k | |
Bluecoat ProxySG | =4.0-r1f | |
Bluecoat ProxySG | =5.1-r1d | |
Bluecoat ProxySG | =4.0-r1c | |
Bluecoat ProxySG | =5.0-r1a | |
Bluecoat ProxySG | =5.1-r1a | |
Bluecoat ProxySG | =5.1-r1e | |
Bluecoat ProxySG | =4.0-r1n | |
Bluecoat ProxySG | =6.0-r1c | |
Bluecoat ProxySG | =6.0-r1a | |
Bluecoat ProxySG | =4.0-r1m | |
Bluecoat ProxySG | =4.0-r1p | |
Bluecoat ProxyAV |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4085 has a high severity level due to the potential for remote code execution.
To fix CVE-2005-4085, upgrade to BlueCoat WinProxy version 6.1a or later for affected versions.
CVE-2005-4085 affects BlueCoat WinProxy versions prior to 6.1a and ProxyAV versions prior to 2.4.2.3.
Yes, CVE-2005-4085 can be exploited remotely through a crafted long Host: header.
CVE-2005-4085 is a buffer overflow vulnerability that can lead to arbitrary code execution.