CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:N/I:N/A:P
AI Score
Confidence
Low
EPSS
Percentile
68.5%
The HTBoundary_put_block function in HTBound.c for W3C libwww (w3c-libwww) allows remote servers to cause a denial of service (segmentation fault) via a crafted multipart/byteranges MIME message that triggers an out-of-bounds read.
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.10/SCOSA-2006.10.txt
secunia.com/advisories/17119
secunia.com/advisories/17122
secunia.com/advisories/17489
secunia.com/advisories/17814
secunia.com/advisories/19193
secunia.com/advisories/25098
www.mandriva.com/security/advisories?name=MDKSA-2005:210
www.redhat.com/support/errata/RHSA-2007-0208.html
www.securityfocus.com/advisories/9444
www.securityfocus.com/advisories/9445
www.securityfocus.com/bid/15035
bugzilla.redhat.com/bugzilla/show_bug.cgi?id=159597
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9653
usn.ubuntu.com/220-1/