A flaw was found in libmicrohttpd. A missing bounds check in the post_process_urlencoded function leads to a buffer overflow, allowing a remote attacker to write arbitrary data in an application that uses libmicrohttpd. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. Only version 0.9.70 is vulnerable.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2021-03-25T00:00:00
Updated: 2024-08-03T16:53:17.627Z
Reserved: 2021-03-24T00:00:00
Link: CVE-2021-3466
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-03-25T19:15:15.297
Modified: 2024-11-21T06:21:36.677
Link: CVE-2021-3466
Redhat