sockethandler.cpp in HTTP Antivirus Proxy (HAVP) 0.88 allows remote attackers to cause a denial of service (hang) by connecting to a non-responsive server, which triggers an infinite loop due to an uninitialized variable.
References
Link | Resource |
---|---|
http://secunia.com/advisories/31494 | Broken Link |
http://secunia.com/advisories/31971 | Broken Link |
http://www.gentoo.org/security/en/glsa/glsa-200809-11.xml | Third Party Advisory |
http://www.securityfocus.com/bid/30697 | Broken Link Third Party Advisory VDB Entry |
http://www.securitytracker.com/id?1020900 | Broken Link Third Party Advisory VDB Entry |
http://www.server-side.de/index.htm | Broken Link Product |
https://exchange.xforce.ibmcloud.com/vulnerabilities/44467 | Third Party Advisory VDB Entry |
https://sourceforge.net/mailarchive/message.php?msg_name=487CDF51.5060201%40endian.com | Broken Link Patch |
Configurations
History
No history.
Information
Published : 2008-08-14 22:41
Updated : 2024-02-08 23:44
NVD link : CVE-2008-3688
Mitre link : CVE-2008-3688
CVE.ORG link : CVE-2008-3688
JSON object : View
Products Affected
havp
- http_antivirus_proxy
CWE
CWE-908
Use of Uninitialized Resource