mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-07 03:02:30 +00:00
824 B
824 B
CVE-2007-6630
Description
The Url_init function in utils/url.c in Netembryo 0.0.4, when used by LScube Feng, allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via a malformed URI containing a "/:" sequence, as demonstrated by a "DESCRIBE /: RTSP/1.0" request.
POC
Reference
- http://aluigi.altervista.org/adv/fengulo-adv.txt
- http://aluigi.org/poc/fengulo.zip
- http://securityreason.com/securityalert/3507
Github
No PoCs found on GitHub currently.