Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://marc.info/?l=bugtraq&m=105457180009860&w=2 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2003-10-09T04:00:00
Updated: 2024-08-08T02:05:12.647Z
Reserved: 2003-10-08T00:00:00
Link: CVE-2003-0842

No data.

Status : Deferred
Published: 2003-11-17T05:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2003-0842

No data.