CVE-2009-1476: Buffer Overflow
Published May 26, 2009
·Updated
Buffer overflow in lib/loadhttp.c in ippool in Darren Reed IPFilter (aka IP Filter) 4.1.31 allows local users to gain privileges via vectors involving a long hostname in a URL.
Affected Software
1 affected component
Darren Reed IPFilter=4.1.31
Event History
May 26, 2009
CVE Published
via MITRE·03:16 PM
Data Sourced
via MITRE·03:16 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-1476?
CVE-2009-1476 is classified as a high severity vulnerability due to the potential for local privilege escalation.
2
How do I fix CVE-2009-1476?
To mitigate CVE-2009-1476, upgrade to a patched version of Darren Reed's IPFilter that resolves the buffer overflow issue.
3
Who is affected by CVE-2009-1476?
CVE-2009-1476 affects local users of Darren Reed IPFilter version 4.1.31.
4
What type of vulnerability is CVE-2009-1476?
CVE-2009-1476 is a buffer overflow vulnerability that can be exploited through long hostnames in URLs.
5
Can CVE-2009-1476 be exploited remotely?
CVE-2009-1476 primarily allows local users to exploit the vulnerability rather than being readily exploitable remotely.