Upstream information
Description
Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadaver before 0.22, allows remote WebDAV servers to execute arbitrary code on the client.SUSE information
Overall state of this security issue: Resolved
This issue is currently rated as having important severity.
National Vulnerability Database | |
---|---|
Base Score | 7.5 |
Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Access Vector | Network |
Access Complexity | Low |
Authentication | None |
Confidentiality Impact | Partial |
Integrity Impact | Partial |
Availability Impact | Partial |
SUSE Security Advisories:
- SUSE-SA:2004:020, published Tuesday, Jul 2nd 2004 18:00 MEST
- SUSE-SA:2004:021, published Friday, Jul 16th 2004 13:00:00 MEST
- SUSE-SA:2004:022, published Friday, Jul 23th 2004 12:30 MEST
- SuSE-SA:2004:013, published Wed May 19 13:00:00 MEST 2004
- SuSE-SA:2004:015, published Wed Jun 9 15:00:00 MEST 2004
- SuSE-SA:2004:016, published Wednesday, Jun 9th 2004 16:30 MEST
- SuSE-SA:2004:017, published Wednesday, Jun 16th 2004 15:20 MEST
- SuSE-SA:2004:018, published Thursday, Jun 17th 2004 09:30 MEST
- SuSE-SA:2004:019, published Tuesday, Jun 22st 2004 21:00 MEST
SUSE Timeline for this CVE
CVE page created: Fri Jun 28 00:49:43 2013CVE page last modified: Fri Dec 8 16:09:31 2023