CVE-2013-4560
published 2013-11-20CVE-2013-4560: Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentation fault and crash) via unspecified…
PriorityP426medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
5.42%
91.9th percentile
Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentation fault and crash) via unspecified vectors that trigger FAMMonitorDirectory failures.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | lighttpd | < lighttpd 1.4.33-1+nmu1 (bookworm) | lighttpd 1.4.33-1+nmu1 (bookworm) |
| lighttpd | lighttpd | < 1.4.33 | 1.4.33 |
| lighttpd | lighttpd | >= 0 < 1.4.33-1+nmu1 | 1.4.33-1+nmu1 |
| lighttpd | lighttpd | >= 0 < 1.4.33-1+nmu1 | 1.4.33-1+nmu1 |
| lighttpd | lighttpd | >= 0 < 1.4.33-1+nmu1 | 1.4.33-1+nmu1 |
| lighttpd | lighttpd | >= 0 < 1.4.33-1+nmu1 | 1.4.33-1+nmu1 |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9r9f-9w9v-wrvp: Use-after-free vulnerability in lighttpd before 1
ghsa_unreviewed·2022-05-13
CVE-2013-4560 [MEDIUM] CWE-416 GHSA-9r9f-9w9v-wrvp: Use-after-free vulnerability in lighttpd before 1
Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentation fault and crash) via unspecified vectors that trigger FAMMonitorDirectory failures.
OSV
CVE-2013-4560: Use-after-free vulnerability in lighttpd before 1
osv·2013-11-20·CVSS 5.0
CVE-2013-4560 [MEDIUM] CVE-2013-4560: Use-after-free vulnerability in lighttpd before 1
Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentation fault and crash) via unspecified vectors that trigger FAMMonitorDirectory failures.
Debian
CVE-2013-4560: lighttpd - Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers t...
vendor_debian·2013·CVSS 5.0
CVE-2013-4560 [MEDIUM] CVE-2013-4560: lighttpd - Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers t...
Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentation fault and crash) via unspecified vectors that trigger FAMMonitorDirectory failures.
Scope: local
bookworm: resolved (fixed in 1.4.33-1+nmu1)
bullseye: resolved (fixed in 1.4.33-1+nmu1)
forky: resolved (fixed in 1.4.33-1+nmu1)
sid: resolved (fixed in 1.4.33-1+nmu1)
trixie: resolved (fixed in 1.4.33-1+nmu1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-4560 lighttpd: Use after free if FAMMonitorDirectory fails
bugzilla·2013-11-12·CVSS 5.0
CVE-2013-4560 [MEDIUM] CVE-2013-4560 lighttpd: Use after free if FAMMonitorDirectory fails
CVE-2013-4560 lighttpd: Use after free if FAMMonitorDirectory fails
Stefan Bühler of the lighthttpd project reports:
Use after free if FAMMonitorDirectory fails
Description
If the "fam" is enabled:
server.stat-cache-engine = "fam"
and there are directories reachable from configured doc roots and aliases on
which FAMMonitorDirectory fails (probably depends on file system), a remote
client could trigger a DoS.
This bug was found with the clang static analyzer.
Detailed analysis
If FAMMonitorDirectory fails, the memory intended to store the context is
released; some lines below the "version" compoment of that context is read.
Reading invalid data doesn't matter, but the memory access could trigger a
segfault.
Affected versions
All versions before 1.4.33.
Patch
See http://download
Bugzilla
CVE-2013-4560 CVE-2013-4559 lighttpd: various flaws [fedora-all]
bugzilla·2013-11-12·CVSS 7.6
CVE-2013-4560 [HIGH] CVE-2013-4560 CVE-2013-4559 lighttpd: various flaws [fedora-all]
CVE-2013-4560 CVE-2013-4559 lighttpd: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects multiple
Bugzilla
CVE-2013-4560 CVE-2013-4559 lighttpd: various flaws [epel-all]
bugzilla·2013-11-12·CVSS 7.6
CVE-2013-4560 [HIGH] CVE-2013-4560 CVE-2013-4559 lighttpd: various flaws [epel-all]
CVE-2013-4560 CVE-2013-4559 lighttpd: various flaws [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects multi
arXiv
One Bad Apple Spoils the Barrel: Understanding the Security Risks Introduced by Third-Party Components in IoT Firmware
arxiv_fulltext·2022-12-29
One Bad Apple Spoils the Barrel: Understanding the Security Risks Introduced by Third-Party Components in IoT Firmware
One Bad Apple Spoils the Barrel: Understanding the Security Risks Introduced by Third-Party Components in IoT Firmware
## Abstract
Currently, the development of IoT firmware heavily depends on third-party components (TPCs) to improve development efficiency. Nevertheless, TPCs are not secure, and the vulnerabilities in TPCs will influence the security of IoT firmware. Existing works pay less attention to the vulnerabilities caused by TPCs, and we still lack a comprehensive understanding of the security impact of TPC vulnerability against firmware. To fill in the knowledge gap, we design and implement , which leverages syntactical features and control-flow graph features to detect the TPCs in firmware, and then recognizes the corresponding vulnerabilities. Based on , we present the first l
http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2013_03.txthttp://jvn.jp/en/jp/JVN37417423/index.htmlhttp://lists.opensuse.org/opensuse-updates/2014-01/msg00049.htmlhttp://marc.info/?l=bugtraq&m=141576815022399&w=2http://secunia.com/advisories/55682http://www.openwall.com/lists/oss-security/2013/11/12/4https://www.debian.org/security/2013/dsa-2795http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2013_03.txthttp://jvn.jp/en/jp/JVN37417423/index.htmlhttp://lists.opensuse.org/opensuse-updates/2014-01/msg00049.htmlhttp://marc.info/?l=bugtraq&m=141576815022399&w=2http://secunia.com/advisories/55682http://www.openwall.com/lists/oss-security/2013/11/12/4https://www.debian.org/security/2013/dsa-2795
2013-11-20
Published