[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[FD] [SECURITY] CVE-2016-6808 Apache Tomcat JK ISAPI Connector buffer overflow
CVE-2016-6808 Apache Tomcat JK ISAPI Connector buffer overflow
Vendor: The Apache Software Foundation
- Apache Tomcat JK ISAPI Connector 1.2.0 to 1.2.41
The IIS/ISAPI specific code implements special handling when a virtual
host is present. The virtual host name and the URI are concatenated to
create a virtual host mapping rule. The length checks prior to writing
to the target buffer for this rule did not take account of the length of
the virtual host name, creating the potential for a buffer overflow.
It is not known if this overflow is exploitable.
Users of affected versions should apply one of the following mitigations
- Upgrade to Apache Tomcat JK ISAPI Connector 1.2.42
- Where available, use IIS configuration to restrict the maximum URI
length to 4095 - (the length of the longest virtual host name)
This issue was discovered by The Apache Tomcat Security Team.
Sent through the Full Disclosure mailing list
Web Archives & RSS: http://seclists.org/fulldisclosure/