The HTTP_Request_Parser method in the HTTP Transport component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.31 allows remote attackers to cause a denial of service (controller 0C4 abend and application hang) via a long HTTP Host header, related to "storage overlay" on the stack and a "parse failure."
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2008-10-22T17:00:00

Updated: 2024-08-07T10:24:20.723Z

Reserved: 2008-10-22T00:00:00

Link: CVE-2008-4678

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2008-10-22T18:00:00.940

Modified: 2017-08-08T01:32:49.907

Link: CVE-2008-4678

cve-icon Redhat

No data.