HTTP.Request.Header.Buffer.Overflow

description-logoDescription

This indicates an attack attempt against a buffer-overflow vulnerability in multiple vendor's products.
The vulnerability is caused by an error when the vulnerable softwares handles a specially crafted HTTP request with an overly long header string. It allows a remote attacker to cause denial of service or execute arbitrary code.

affected-products-logoAffected Products

Macromedia JRun 4.0 and previous versions
HP OpenView Network Node Manager 7.53 and previous versions
IBM Tivoli Storage Manager 5.4 Client and previous versions
IBM Lotus Domino 8.0 and previous versions
Oracle BEA Systems WebLogic Workshop 8.1 SP 6 and previous versions

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.
Denial of service

recomended-action-logoRecommended Actions

Contact your vendor for upgrade or patch information.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)