CVE-2017-1000470: Integer Overflow
Published Jan 3, 2018
·Updated
EmbedThis GoAhead Webserver versions 4.0.0 and earlier is vulnerable to an integer overflow in the HTTP listener resulting in denial of service.
Affected Software
1 affected component
Embedthis Goahead Web Server=4.0.0
Remediation
Patch Available
Event History
Jan 3, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is CVE-2017-1000470?
CVE-2017-1000470 is a vulnerability in EmbedThis GoAhead Webserver versions 4.0.0 and earlier that allows for a denial of service through an integer overflow in the HTTP listener.
2
How severe is CVE-2017-1000470?
CVE-2017-1000470 has a severity score of 7.5 (high).
3
Which software versions are affected by CVE-2017-1000470?
EmbedThis GoAhead Webserver versions 4.0.0 and earlier are affected by CVE-2017-1000470.
4
How can I fix CVE-2017-1000470?
To fix CVE-2017-1000470, it is recommended to update to a version of EmbedThis GoAhead Webserver which is later than 4.0.0.
5
What is the Common Weakness Enumeration (CWE) ID of CVE-2017-1000470?
CVE-2017-1000470 is associated with CWE-190, which is the Integer Overflow or Wraparound vulnerability type.