CVE-2007-0774
Apache Tomcat JK Web Server Connector Long URL Stack Overflow Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Stack-based buffer overflow in the map_uri_to_worker function (native/common/jk_uri_worker_map.c) in mod_jk.so for Apache Tomcat JK Web Server Connector 1.2.19 and 1.2.20, as used in Tomcat 4.1.34 and 5.5.20, allows remote attackers to execute arbitrary code via a long URL that triggers the overflow in a URI worker map routine.
Desbordamiento de búfer basado en pila en la función map_uri_to_worker (native/common/jk_uri_worker_map.c) en mod_jk.so para Apache Tomcat JK Web Server Connector 1.2.19 y 1.2.20, tal y como se usa en Tomcat 4.1.34 y 5.5.20, permite a atacantes remotos ejecutar código de su elección a través de una URL que dispara el desbordamiento de búfer en una rutina del mapa del trabajador URI.
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Apache Tomcat JK Web Server Connector. Authentication is not required to exploit this vulnerability.
The specific flaw exists in the URI handler for the mod_jk.so library, map_uri_to_worker(), defined in native/common/jk_uri_worker_map.c. When parsing a long URL request, the URI worker map routine performs an unsafe memory copy. This results in a stack overflow condition which can be leveraged to execute arbitrary code.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-02-06 CVE Reserved
- 2007-03-02 CVE Published
- 2007-07-08 First Exploit
- 2024-08-07 CVE Updated
- 2024-09-13 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (29)
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/4162 | 2007-07-08 | |
https://www.exploit-db.com/exploits/16798 | 2010-07-25 |
URL | Date | SRC |
---|---|---|
http://tomcat.apache.org/connectors-doc/miscellaneous/changelog.html | 2023-02-13 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apache Search vendor "Apache" | Tomcat Jk Web Server Connector Search vendor "Apache" for product "Tomcat Jk Web Server Connector" | 1.2.19 Search vendor "Apache" for product "Tomcat Jk Web Server Connector" and version "1.2.19" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Tomcat Jk Web Server Connector Search vendor "Apache" for product "Tomcat Jk Web Server Connector" | 1.2.20 Search vendor "Apache" for product "Tomcat Jk Web Server Connector" and version "1.2.20" | - |
Affected
|