Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
2005-02-09T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | apache | http_server | ≤ 1.3.32 | Yes |
Application | openpkg | openpkg | 2.0 | Yes |
Application | openpkg | openpkg | 2.1 | Yes |
Application | openpkg | openpkg | 2.2 | Yes |
Operating System | hp | hp-ux | 11.00 | Yes |
Operating System | hp | hp-ux | 11.11 | Yes |
Operating System | hp | hp-ux | 11.20 | Yes |
Operating System | hp | hp-ux | 11.22 | Yes |
Operating System | slackware | slackware_linux | 8.0 | Yes |
Operating System | slackware | slackware_linux | 8.1 | Yes |
Operating System | slackware | slackware_linux | 9.0 | Yes |
Operating System | slackware | slackware_linux | 9.1 | Yes |
Operating System | slackware | slackware_linux | 10.0 | Yes |
Operating System | slackware | slackware_linux | current | Yes |
Operating System | suse | suse_linux | 8.0 | Yes |
Operating System | suse | suse_linux | 8.1 | Yes |
Operating System | suse | suse_linux | 8.2 | Yes |
Operating System | suse | suse_linux | 9.0 | Yes |
Operating System | suse | suse_linux | 9.1 | Yes |
Operating System | suse | suse_linux | 9.2 | Yes |
Operating System | trustix | secure_linux | 1.5 | Yes |