Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 523
Alerts This Week
Warning Icon 1 523

Gentoo: GLSA 200504-29 High: Pound Buffer Overflow Risk of Remote Execution

gentoo
Calendar Grey April 30, 2005
Scroller Gentoo
Gentoo Linux security advisory GLSA 202310-38 discloses a severe buffer overflow vulnerability in Apache affecting potential remote code execution.
Pound is vulnerable to a buffer overflow that could lead to the remote execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200504-29 https://security.gentoo.org/ Severity: High Title: Pound: Buffer overflow vulnerability Date: April 30, 2005 Bugs: #90851 ID: 200504-29

Synopsis ======= Pound is vulnerable to a buffer overflow that could lead to the remote execution of arbitrary code.
Background ========= Pound is a reverse proxy, load balancer and HTTPS front-end.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 www-servers/pound < 1.8.3 >= 1.8.3
========== Steven Van Acker has discovered a buffer overflow vulnerability in the "add_port()" function in Pound.
Impact ===== A remote attacker could send a request for an overly long hostname para...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround