Buffer overflow in the Log function in util.c in GazTek ghttpd 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long HTTP GET request.
| Software | From | Fixed in |
|---|---|---|
| gaztek / ghttpd | 1.4.1 | 1.4.1.x |
| gaztek / ghttpd | 1.4 | 1.4.x |
| gaztek / ghttpd | 1.4.3 | 1.4.3.x |
| gaztek / ghttpd | 1.4.2 | 1.4.2.x |