CVE-2013-3843: Buffer Overflow
Published Jun 13, 2014
·Updated
Stack-based buffer overflow in the mkrequestheaderprocess function in mkrequest.c in Monkey HTTP Daemon (monkeyd) before 1.2.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTTP header.
Affected Software
1 affected component
Monkey-project Monkey<=1.2.0
Event History
Jun 13, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Data Sourced
via NVD·02:55 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-3843?
CVE-2013-3843 has a severity rating that indicates a high risk of denial of service and potential arbitrary code execution.
2
How do I fix CVE-2013-3843?
To fix CVE-2013-3843, update the Monkey HTTP Daemon to version 1.2.1 or later.
3
What causes the vulnerability in CVE-2013-3843?
CVE-2013-3843 is caused by a stack-based buffer overflow in the mk_request_header_process function.
4
Which versions of the Monkey HTTP Daemon are affected by CVE-2013-3843?
CVE-2013-3843 affects all versions of Monkey HTTP Daemon prior to 1.2.1.
5
What impact does CVE-2013-3843 have on users?
CVE-2013-3843 can allow remote attackers to crash the server or possibly execute arbitrary code.