Lucene search

K
cvelistMitreCVELIST:CVE-2009-4413
HistoryDec 24, 2009 - 4:00 p.m.

CVE-2009-4413

2009-12-2416:00:00
mitre
www.cve.org
4

AI Score

6.4

Confidence

High

EPSS

0.034

Percentile

91.5%

The httpClientDiscardBody function in client.c in Polipo 0.9.8, 0.9.12, 1.0.4, and possibly other versions, allows remote attackers to cause a denial of service (crash) via a request with a large Content-Length value, which triggers an integer overflow, a signed-to-unsigned conversion error with a negative value, and a segmentation fault.

AI Score

6.4

Confidence

High

EPSS

0.034

Percentile

91.5%