Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function.
| Software | From | Fixed in |
|---|---|---|
| thttpd / thttpd_http_server | - | 2.04.x |
| thttpd / thttpd_http_server | - | 2.04.31.x |
| thttpd / thttpd_http_server | 1.90a | 1.90a.x |