Bug ID 1124759
Summary VUL-1: CVE-2019-7401: nginx-unit: heap-based buffer overflow in the router process with a specially crafted request
Classification openSUSE
Product openSUSE Distribution
Version Leap 15.1
Hardware Other
URL https://smash.suse.de/issue/224406/
OS Other
Status NEW
Severity Minor
Priority P5 - None
Component Security
Assignee mrueckert@suse.com
Reporter rfrohl@suse.com
QA Contact security-team@suse.de
Found By Security Response Team
Blocker ---

CVE-2019-7401

NGINX Unit before 1.7.1 might allow an attacker to cause a heap-based buffer
overflow in the router process with a specially crafted request. This may
result
in a denial of service (router process crash) or possibly have unspecified
other
impact.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2019-7401
http://hg.nginx.org/unit/file/tip/CHANGES
http://unit.nginx.org/CHANGES.txt
http://mailman.nginx.org/pipermail/unit/2019-February/000113.html


You are receiving this mail because: