CVE-2014-0019

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
04/02/2014
Last modified:
11/04/2025

Description

Stack-based buffer overflow in socat 1.3.0.0 through 1.7.2.2 and 2.0.0-b1 through 2.0.0-b6 allows local users to cause a denial of service (segmentation fault) via a long server name in the PROXY-CONNECT address in the command line.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dest-unreach:socat:2.0.0:b1:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:2.0.0:b2:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:2.0.0:b3:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:2.0.0:b4:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:2.0.0:b5:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:2.0.0:b6:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:19:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:1.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:1.3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:1.3.1.0:*:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:1.3.2.0:*:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:1.3.2.1:*:*:*:*:*:*:*
cpe:2.3:a:dest-unreach:socat:1.3.2.2:*:*:*:*:*:*:*