Summary
The remote host is missing an update to tinyproxy
announced via advisory DSA 018-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20018-1
Insight
PkC have found a heap overflow in tinyproxy that could be remotely exploited. An attacker could gain a shell (user nobody) remotely.
We recommend you upgrade your tinyproxy package immediately.
Severity
Classification
-
CVE CVE-2001-0129 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities