First published: Fri Jun 08 2007(Updated: )
Buffer overflow in k9filter.exe in BlueCoat K9 Web Protection 3.2.36, and probably other versions before 3.2.44, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request to port 2372.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Blue Coat K9 Web Protection | =3.2.36 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1685 is classified as having a high severity due to its potential to cause denial of service and arbitrary code execution.
To fix CVE-2007-1685, upgrade BlueCoat K9 Web Protection to version 3.2.44 or later.
CVE-2007-1685 specifically affects BlueCoat K9 Web Protection version 3.2.36 and possibly other earlier versions.
CVE-2007-1685 can be exploited through a long HTTP GET request sent to port 2372, leading to a buffer overflow.
CVE-2007-1685 is a remote vulnerability, allowing attackers to exploit the software over a network.