Description
Buffer overflow in BlueCoat (a) WinProxy before 6.1a and (b) the web console access functionality in ProxyAV before 2.4.2.3 allows remote attackers to execute arbitrary code via a long Host: header.
Affected products
- bluecoat / proxyav
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy4.0 β 4.0
- bluecoat / webproxy5.0 β 5.0
- bluecoat / webproxy5.0 β 5.0
- bluecoat / webproxy5.1 β 5.1
- bluecoat / webproxy5.1 β 5.1
- bluecoat / webproxy5.1 β 5.1
- bluecoat / webproxy5.2 β 5.2
- bluecoat / webproxy6.0 β 6.0
- bluecoat / webproxy6.0 β 6.0
- bluecoat / webproxy5.0 β 5.0
References
- VENDOR_ADVISORYhttp://secunia.com/advisories/18909
- MISChttp://securitytracker.com/id?1015441
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/0622
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/0065
- VENDOR_ADVISORYhttp://secunia.com/advisories/18288
- MISChttp://www.idefense.com/intelligence/vulnerabilities/display.php?id=364
- MISChttp://www.bluecoat.com/support/knowledge/advisory_host_header_stack_overflow.html
- MISChttp://www.securityfocus.com/bid/16147