CVE-2010-2054: Integer Overflow
Integer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB 1.3.4 through 1.3.7, when the configuration sets httpMaxContentLength to a zero value, allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via a large integer in the Content-Length HTTP header, aka bug #3001915. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2054?
The severity of CVE-2010-2054 is rated as critical with a score of 10.
How do I fix CVE-2010-2054?
To mitigate CVE-2010-2054, update the SBLIM SFCB to a version later than 1.3.7 and ensure that httpMaxContentLength is not set to zero.
What impact does CVE-2010-2054 have on my system?
CVE-2010-2054 can lead to denial of service through heap memory corruption or potential execution of arbitrary code.
Which software is affected by CVE-2010-2054?
CVE-2010-2054 affects the Standards Based Linux Instrumentation sblim-sfcb versions 1.3.4 through 1.3.7.
What type of vulnerability is CVE-2010-2054?
CVE-2010-2054 is categorized as an integer overflow vulnerability.