HTTP: Mongoose HTTP Server URI Handling Overflow
This signature detects attempts to exploit a known flaw in SHTTPD (now known as Mongoose HTTPD). A successful exploit results in arbitrary code execution.
Extended Description
SHTTPD is prone to a remote buffer-overflow vulnerability. Specifically, the issue presents itself as an error in the handling of HTTP POST requests. SHTTPD 1.34 and prior are reported vulnerable; other versions may be affected as well.
Affected Products
Shttpd shttpd
References
BugTraq: 20393
CVE: CVE-2006-5216
URL: http://code.google.com/p/mongoose/ http://shttpd.sourceforge.net/ http://shttpd.sourceforge.net
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Shttpd
7.5