Description
A buffer over-read in Util_urlDecode in util.c in Tildeslash Monit before 5.25.3 allows a remote authenticated attacker to retrieve the contents of adjacent memory via manipulation of GET or POST parameters. The attacker can also cause a denial of service (application outage).
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1767-1 | monit security update |
Debian DLA |
DLA-2855-1 | monit security update |
EUVD |
EUVD-2019-3130 | A buffer over-read in Util_urlDecode in util.c in Tildeslash Monit before 5.25.3 allows a remote authenticated attacker to retrieve the contents of adjacent memory via manipulation of GET or POST parameters. The attacker can also cause a denial of service (application outage). |
Ubuntu USN |
USN-3971-1 | Monit vulnerabilities |
Ubuntu USN |
USN-4860-1 | Monit vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T22:55:40.222Z
Reserved: 2019-04-22T00:00:00.000Z
Link: CVE-2019-11455
No data.
Status : Modified
Published: 2019-04-22T16:29:01.600
Modified: 2024-11-21T04:21:06.793
Link: CVE-2019-11455
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN