The parse_request function in request.c in c-icap 0.2.x allows remote attackers to cause a denial of service (crash) via a URI without a " " or "?" character in an ICAP request, as demonstrated by use of the OPTIONS method.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-12-19T20:00:00
Updated: 2024-08-06T18:09:16.955Z
Reserved: 2014-09-15T00:00:00
Link: CVE-2013-7401
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-12-19T20:59:00.057
Modified: 2024-11-21T02:00:55.913
Link: CVE-2013-7401
Redhat
No data.