CVE-2015-1548
mini_httpd 1.21 and earlier allows remote attackers to obtain sensitive information from process memory via an HTTP request with a long protocol string, which triggers an incorrect response size calculation and an out-of-bounds read.
- Affected products
- Alt Linux, Mini Httpd
- Acme Mini Httpd
- ≤ 1.21
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 1.6% (73th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2015-02-10
CVE-2015-1548 at NVD
No indexed exploits for CVE-2015-1548 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2015-1548 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.