First published: Mon Jul 22 2019(Updated: )
Cherokee Webserver Latest Cherokee Web server Upto Version 1.2.103 (Current stable) is affected by: Buffer Overflow - CWE-120. The impact is: Crash. The component is: Main cherokee command. The attack vector is: Overwrite argv[0] to an insane length with execl. The fixed version is: There's no fix yet.
Credit: josh@bress.net
Affected Software | Affected Version | How to fix |
---|---|---|
cherokee-project Cherokee Web server | <=1.2.103 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-1010218 is classified as having a high severity due to the potential for a crash resulting from a buffer overflow.
There is currently no fix available for CVE-2019-1010218 as it affects the Cherokee Web server up to version 1.2.103.
CVE-2019-1010218 affects the Cherokee Web server, specifically versions up to and including 1.2.103.
CVE-2019-1010218 is a buffer overflow vulnerability, which falls under CWE-120.
The exploitation of CVE-2019-1010218 can lead to a crash of the Cherokee Web server.