Vulnerability Name:

CVE-2011-4362 (CCN-71536)

Assigned:2011-11-30
Published:2011-11-30
Updated:2021-03-04
Summary:Integer signedness error in the base64_decode function in the HTTP authentication functionality (http_auth.c) in lighttpd 1.4 before 1.4.30 and 1.5 before SVN revision 2806 allows remote attackers to cause a denial of service (segmentation fault) via crafted base64 input that triggers an out-of-bounds read with a negative index.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
4.1 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:F/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
4.1 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:F/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Denial of Service
References:Source: BUGTRAQ
Type: Broken Link
20111224 Lighttpd Proof of Concept code for CVE-2011-4362

Source: MISC
Type: Exploit, Third Party Advisory
http://blog.pi3.com.pl/?p=277

Source: MITRE
Type: CNA
CVE-2011-4362

Source: CCN
Type: lighttpd Web Site
out-of-bounds read due to signedness error

Source: CONFIRM
Type: Exploit, Patch, Vendor Advisory
http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2011_01.txt

Source: JVN
Type: Third Party Advisory
JVN#37417423

Source: CONFIRM
Type: Exploit, Patch, Vendor Advisory
http://redmine.lighttpd.net/issues/2370

Source: CCN
Type: SA46847
lighttpd Base64 Authentication Data Decoding Denial of Service Vulnerability

Source: SECUNIA
Type: Third Party Advisory
47260

Source: DEBIAN
Type: Third Party Advisory
DSA-2368

Source: DEBIAN
Type: DSA-2368
lighttpd -- multiple vulnerabilities

Source: EXPLOIT-DB
Type: Exploit, Third Party Advisory, VDB Entry
18295

Source: MLIST
Type: Exploit, Mailing List, Patch, Third Party Advisory
[oss-security] 20111129 Re: CVE Request: lighttpd/mod_auth out-of-bounds read due to signedness error

Source: MLIST
Type: Exploit, Mailing List, Patch, Third Party Advisory
[oss-security] 20111129 CVE Request: lighttpd/mod_auth out-of-bounds read due to signedness error

Source: CCN
Type: OSVDB ID: 77366
lighttpd src/http_auth.c base64_decode() Function Base64 Data Parsing Out-of-bounds Read Remote DoS

Source: CCN
Type: BID-50851
lighttpd 'http_auth.c' Remote Denial of Service Vulnerability

Source: SECTRACK
Type: Third Party Advisory, VDB Entry
1026359

Source: CONFIRM
Type: Issue Tracking, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=758624

Source: XF
Type: Third Party Advisory, VDB Entry
lighttpd-base64-dos(71536)

Source: XF
Type: UNKNOWN
lighttpd-base64-dos(71536)

Source: EXPLOIT-DB
Type: EXPLOIT
Offensive Security Exploit Database [12-31-2011]

Vulnerable Configuration:Configuration 1:
  • cpe:/a:lighttpd:lighttpd:*:*:*:*:*:*:*:* (Version >= 1.4.1 and < 1.4.30)
  • OR cpe:/a:lighttpd:lighttpd:1.5.0:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:debian:debian_linux:5.0:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:6.0:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:7.0:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:lighttpd:lighttpd:1.4.8:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.10:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.12:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.13:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.15:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.17:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.18:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.19:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.14:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.11:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.9:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.7:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.6:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.5:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.4:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.3:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.2:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.1:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.16:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.0:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.22:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.23:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.24:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.25:*:*:*:*:*:*:*
  • OR cpe:/a:lighttpd:lighttpd:1.4.26:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20114362
    V
    CVE-2011-4362
    2022-09-02
    oval:org.opensuse.security:def:6349
    P
    Security update for libgda (Important) (in QA)
    2022-08-31
    oval:org.opensuse.security:def:6327
    P
    Security update for the Linux Kernel (Important)
    2022-04-14
    oval:org.opensuse.security:def:6326
    P
    Security update for netatalk (Important)
    2022-04-13
    oval:org.opensuse.security:def:6361
    P
    Security update for the Linux Kernel (Important)
    2022-03-09
    oval:org.opensuse.security:def:6337
    P
    Security update for polkit (Important)
    2022-01-25
    oval:org.opensuse.security:def:112948
    P
    lighttpd-1.4.37-1.6 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:6293
    P
    Security update for virglrenderer (Important) (in QA)
    2022-01-17
    oval:org.opensuse.security:def:6304
    P
    Security update for clamav-database (Important)
    2022-01-17
    oval:org.opensuse.security:def:6296
    P
    Security update for net-snmp (Important)
    2022-01-11
    oval:org.opensuse.security:def:6285
    P
    Security update for clamav-database (Important)
    2022-01-03
    oval:org.opensuse.security:def:7288
    P
    Security update for the Linux Kernel (Important)
    2021-12-06
    oval:org.opensuse.security:def:6307
    P
    Security update for the Linux Kernel (Important)
    2021-11-19
    oval:org.opensuse.security:def:7278
    P
    Security update for the Linux Kernel (Important)
    2021-11-11
    oval:org.opensuse.security:def:6457
    P
    Security update for the Linux Kernel (Important)
    2021-10-15
    oval:org.opensuse.security:def:7277
    P
    Security update for the Linux Kernel (Important)
    2021-10-12
    oval:org.opensuse.security:def:106402
    P
    lighttpd-1.4.37-1.6 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:26137
    P
    Security update for sqlite3 (Important)
    2021-09-23
    oval:org.opensuse.security:def:7266
    P
    Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP3) (Important)
    2021-09-16
    oval:org.opensuse.security:def:6453
    P
    Security update for java-1_8_0-openjdk (Important)
    2021-08-20
    oval:org.opensuse.security:def:6476
    P
    Security update for the Linux Kernel (Important)
    2021-08-14
    oval:org.opensuse.security:def:7255
    P
    Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP3) (Important)
    2021-07-27
    oval:org.opensuse.security:def:26073
    P
    Security update for libjpeg-turbo (Moderate)
    2021-06-11
    oval:org.opensuse.security:def:12785
    P
    lighttpd-1.4.35-3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12796
    P
    lighttpd-1.4.35-3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36512
    P
    lighttpd-1.4.20-2.54.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12774
    P
    lighttpd-1.4.35-1.34 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:123991
    P
    lighttpd-1.4.35-3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:26062
    P
    Security update for djvulibre (Important)
    2021-05-31
    oval:org.opensuse.security:def:6445
    P
    Security update for the Linux Kernel (Important)
    2021-04-16
    oval:org.opensuse.security:def:7244
    P
    Security update for the Linux Kernel (Live Patch 2 for SLE 15 SP2) (Important)
    2021-03-17
    oval:org.opensuse.security:def:6319
    P
    Security update for python (Moderate)
    2021-03-16
    oval:org.opensuse.security:def:6464
    P
    Security update for java-1_8_0-ibm (Important)
    2021-03-01
    oval:org.opensuse.security:def:6315
    P
    Security update for avahi (Moderate)
    2021-02-23
    oval:org.opensuse.security:def:26061
    P
    Security update for dovecot22 (Important)
    2021-01-04
    oval:org.opensuse.security:def:6442
    P
    Security update for java-1_8_0-ibm (Moderate)
    2020-12-23
    oval:org.opensuse.security:def:12808
    P
    lighttpd-1.4.35-3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:6395
    P
    libldap-2_4-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6595
    P
    eog on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26740
    P
    libarchive2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6539
    P
    xorg-x11-libs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26487
    P
    Security update for redis (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6640
    P
    imobiledevice-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6430
    P
    libsilc-1_1-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6593
    P
    emacs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6609
    P
    gdm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6553
    P
    apparmor-docs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26638
    P
    squid on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6434
    P
    libsoup-2_4-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26837
    P
    vte on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26346
    P
    Security update for irssi (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6606
    P
    gd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6575
    P
    ctags on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6551
    P
    accountsservice on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27475
    P
    libpulse-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6604
    P
    ft2demos on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6372
    P
    libexif12 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26779
    P
    logwatch on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6564
    P
    busybox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6517
    P
    tcpdump on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6617
    P
    gnome-settings-daemon on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6408
    P
    libneon27 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6618
    P
    gnome-shell on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6586
    P
    dnsmasq on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26691
    P
    enscript on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:7300
    P
    lighttpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26403
    P
    Security update for ffmpeg (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6615
    P
    gnome-keyring on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6383
    P
    libgypsy0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6584
    P
    dhcp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6576
    P
    cups on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6528
    P
    wget on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27510
    P
    lighttpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6628
    P
    gstreamer-plugins-bad on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6419
    P
    libpoppler-glib8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26793
    P
    openswan on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26265
    P
    Security update for guile (Low)
    2020-12-01
    oval:org.opensuse.security:def:6597
    P
    expat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6542
    P
    yast2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6423
    P
    libpython2_7-1_0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6627
    P
    gstreamer-0_10-plugins-good on GA media (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:15241
    P
    DSA-2368-1 lighttpd -- multiple
    2014-06-23
    BACK
    lighttpd lighttpd *
    lighttpd lighttpd 1.5.0
    debian debian linux 5.0
    debian debian linux 6.0
    debian debian linux 7.0
    lighttpd lighttpd 1.4.8
    lighttpd lighttpd 1.4.10
    lighttpd lighttpd 1.4.12
    lighttpd lighttpd 1.4.13
    lighttpd lighttpd 1.4.15
    lighttpd lighttpd 1.4.17
    lighttpd lighttpd 1.4.18
    lighttpd lighttpd 1.4.19
    lighttpd lighttpd 1.4.14
    lighttpd lighttpd 1.4.11
    lighttpd lighttpd 1.4.9
    lighttpd lighttpd 1.4.7
    lighttpd lighttpd 1.4.6
    lighttpd lighttpd 1.4.5
    lighttpd lighttpd 1.4.4
    lighttpd lighttpd 1.4.3
    lighttpd lighttpd 1.4.2
    lighttpd lighttpd 1.4.1
    lighttpd lighttpd 1.4.16
    lighttpd lighttpd 1.4.0
    lighttpd lighttpd 1.4.22
    lighttpd lighttpd 1.4.23
    lighttpd lighttpd 1.4.24
    lighttpd lighttpd 1.4.25
    lighttpd lighttpd 1.4.26