Vulnerabilities > CVE-2004-1053 - Remote Buffer Overflow vulnerability in FreeBSD Fetch

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
freebsd
critical
nessus

Summary

Integer overflow in fetch on FreeBSD 4.1 through 5.3 allows remote malicious servers to execute arbitrary code via certain HTTP headers in an HTTP response, which lead to a buffer overflow.

Vulnerable Configurations

Part Description Count
Application
Freebsd
1

Nessus

NASL familyFreeBSD Local Security Checks
NASL idFREEBSD_FETCH.NASL
descriptionThe remote host is running a version of FreeBSD which contains a flaw in the
last seen2020-06-01
modified2020-06-02
plugin id15761
published2004-11-18
reporterThis script is Copyright (C) 2004-2010 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/15761
titleFreeBSD : SA-04:16.fetch