First published: Wed Aug 27 2008(Updated: )
neon 0.28.0 through 0.28.2 allows remote servers to cause a denial of service (NULL pointer dereference and crash) via vectors related to Digest authentication, Digest domain parameter support, and the parse_domain function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Neon WebDAV | =0.28.2 | |
Neon WebDAV | =0.28.0 | |
Neon WebDAV | =0.28.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3746 has a medium severity level due to its potential to cause a denial of service.
To fix CVE-2008-3746, upgrade to Neon versions 0.28.3 or later where the vulnerability has been patched.
CVE-2008-3746 affects Neon WebDAV versions 0.28.0 through 0.28.2.
CVE-2008-3746 enables remote servers to exploit the vulnerability, leading to a denial of service by causing a null pointer dereference.
There is no confirmed workaround for CVE-2008-3746; updating to a patched version is recommended.