First published: Thu Apr 04 2019(Updated: )
htp_parse_authorization_digest in htp_parsers.c in LibHTP 0.5.26 allows remote attackers to cause a heap-based buffer over-read via an authorization digest header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OISF LibHTP | =0.5.26 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-10243 is a vulnerability in LibHTP 0.5.26 that allows remote attackers to cause a heap-based buffer over-read via an authorization digest header.
The severity of CVE-2018-10243 is critical with a severity value of 9.8.
CVE-2018-10243 allows remote attackers to cause a heap-based buffer over-read in LibHTP 0.5.26.
LibHTP 0.5.26 is affected by CVE-2018-10243.
To fix CVE-2018-10243, it is recommended to update to a version of LibHTP that is not affected, if available, or apply any patches provided by the software vendor.