CVE-2014-0019
Not scored
CVE-2014-0019
Stack-based buffer overflow in socat 1.3.0.0 through 1.7.2.2 and 2.0.0-b1 through 2.0.0-b6 allows local users to cause a denial of service (segmentation fault) via a long server name in the PROXY-CONNECT address in the command line.
Exploit probability
0.4%
Published
February 4, 2014
Required by
Not available
Last source change
April 16, 2026
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2014-0019
View original source
Stack-based buffer overflow in socat 1.3.0.0 through 1.7.2.2 and 2.0.0-b1 through 2.0.0-b6 allows local users to cause a denial of service (segmentation fault) via a long server name in the PROXY-CONNECT address in the command line.
05 / REFERENCES
Further evidence
- http://lists.fedoraproject.org/pipermail/package-announce/2014-February/128190.html
- http://lists.fedoraproject.org/pipermail/package-announce/2014-February/128229.html
- http://lists.opensuse.org/opensuse-updates/2015-04/msg00043.html
- http://osvdb.org/102612
- http://seclists.org/oss-sec/2014/q1/159
- http://www.dest-unreach.org/socat
- http://www.dest-unreach.org/socat/contrib/socat-secadv5.txt
- http://www.mandriva.com/security/advisories?name=MDVSA-2014:033
- http://www.securityfocus.com/bid/65201