Total vulnerabilities in the database
The silc_http_server_parse function in lib/silchttp/silchttpserver.c in the internal HTTP server in silcd in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.9 allows remote attackers to overwrite a stack location and possibly execute arbitrary code via a crafted Content-Length header, related to incorrect use of a %lu format string.
Software | From | Fixed in |
---|---|---|
silcnet / silc_toolkit | 1.1.3 | 1.1.3.x |
silcnet / silc_toolkit | 1.1.5 | 1.1.5.x |
silcnet / silc_toolkit | 1.1 | 1.1.x |
silcnet / silc_toolkit | 1.1.1 | 1.1.1.x |
silcnet / silc_toolkit | 1.1.6 | 1.1.6.x |
silcnet / silc_toolkit | 1.1.4 | 1.1.4.x |
silcnet / silc_toolkit | 1.1.2 | 1.1.2.x |
silcnet / silc_toolkit | - | 1.1.8.x |