Vulnerabilities > CVE-2009-4413 - Numeric Errors vulnerability in Pps.Jussieu Polipo 0.9.12/0.9.8/1.0.4
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The httpClientDiscardBody function in client.c in Polipo 0.9.8, 0.9.12, 1.0.4, and possibly other versions, allows remote attackers to cause a denial of service (crash) via a request with a large Content-Length value, which triggers an integer overflow, a signed-to-unsigned conversion error with a negative value, and a segmentation fault.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Common Weakness Enumeration (CWE)
Exploit-Db
description | Polipo 1.0.4 Remote Memory Corruption 0day PoC. CVE-2009-3305,CVE-2009-4413. Dos exploit for linux platform |
file | exploits/linux/dos/10338.pl |
id | EDB-ID:10338 |
last seen | 2016-02-01 |
modified | 2009-12-07 |
platform | linux |
port | |
published | 2009-12-07 |
reporter | Jeremy Brown |
source | https://www.exploit-db.com/download/10338/ |
title | Polipo 1.0.4 - Remote Memory Corruption PoC 0day |
type | dos |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-2002.NASL |
description | Several denial of service vulnerabilities have been discovered in polipo, a small, caching web proxy. The Common Vulnerabilities and Exposures project identifies the following problems : - CVE-2009-3305 A malicous remote sever could cause polipo to crash by sending an invalid Cache-Control header. - CVE-2009-4143 A malicous client could cause polipo to crash by sending a large Content-Length value. This upgrade also fixes some other bugs that could lead to a daemon crash or an infinite loop and may be triggerable remotely. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 44866 |
published | 2010-02-24 |
reporter | This script is Copyright (C) 2010-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/44866 |
title | Debian DSA-2002-1 : polipo - denial of service |
code |
|
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=560779
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=560779
- http://secunia.com/advisories/37607
- http://secunia.com/advisories/37607
- http://secunia.com/advisories/38647
- http://secunia.com/advisories/38647
- http://www.debian.org/security/2010/dsa-2002
- http://www.debian.org/security/2010/dsa-2002
- http://www.exploit-db.com/exploits/10338
- http://www.exploit-db.com/exploits/10338
- http://www.openwall.com/lists/oss-security/2009/12/12/4
- http://www.openwall.com/lists/oss-security/2009/12/12/4
- http://www.securityfocus.com/bid/37463
- http://www.securityfocus.com/bid/37463