CVE-2010-1937: Buffer Overflow
Published Jun 14, 2010
·Updated
Heap-based buffer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB before 1.3.8 might allow remote attackers to execute arbitrary code via a Content-Length HTTP header that specifies a value too small for the amount of POST data, aka bug #3001896.
Affected Software
4 affected components
Standards Based Linux Instrumentation sblim-sfcb<=1.3.7
Standards Based Linux Instrumentation sblim-sfcb=1.3.4
Standards Based Linux Instrumentation sblim-sfcb=1.3.5
Standards Based Linux Instrumentation sblim-sfcb=1.3.6
Event History
Jun 14, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-1937?
The severity of CVE-2010-1937 is rated as critical with a CVSS score of 10.
2
How do I fix CVE-2010-1937?
To fix CVE-2010-1937, upgrade to SBLIM SFCB version 1.3.8 or later.
3
What type of vulnerability is CVE-2010-1937?
CVE-2010-1937 is a heap-based buffer overflow vulnerability.
4
What could be the impact of CVE-2010-1937?
The impact of CVE-2010-1937 allows remote attackers to execute arbitrary code.
5
What software is affected by CVE-2010-1937?
The affected software for CVE-2010-1937 is Standards Based Linux Instrumentation SBLIM SFCB prior to version 1.3.8.