Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://www.gentoo.org/security/en/glsa/glsa-200411-31.xml http://bugs.gentoo.org/show_bug.cgi?id=70090
http://marc.theaimsgroup.com/?l=bugtraq&m=110136626320497 http://www.vuxml.org/freebsd/1a32e8ee-3edb-11d9-8699-00065be4b5b6.html
Insight
The following package is affected: prozilla
The prozilla client suffers from multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols allowing remote servers to execute arbitrary code via a long Location header.
Severity
Classification
-
CVE CVE-2004-1120 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities