Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2003-10-09T04:00:00

Updated: 2024-08-08T02:05:12.647Z

Reserved: 2003-10-08T00:00:00

Link: CVE-2003-0842

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2003-11-17T05:00:00.000

Modified: 2025-04-03T01:03:51.193

Link: CVE-2003-0842

cve-icon Redhat

No data.