[Pkg-nagios-devel] Bug#445475: CVE-2007-5198: Buffer overflow in the redir function in check_http.c

Steffen Joeris steffen.joeris at skolelinux.de
Sat Oct 6 05:57:33 UTC 2007


Package: nagios-plugins
Severity: grave
Tags: security
Justification: user security hole

Hi

The following CVE[0] has been issued against nagios-plugins.

CVE-2007-5198:

Buffer overflow in the redir function in check_http.c in Nagios Plugins
before 1.4.10 allows remote web servers to execute arbitrary code via
long Location header responses (redirects).

Could you please investigate this?
Thanks for your efforts.

Cheers
Steffen

[0]: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5198





More information about the Pkg-nagios-devel mailing list