Unrated severityNVD Advisory· Published Oct 4, 2007· Updated Apr 23, 2026
CVE-2007-5198
CVE-2007-5198
Description
Buffer overflow in the redir function in check_http.c in Nagios Plugins before 1.4.10, when running with the -f (follow) option, allows remote web servers to execute arbitrary code via Location header responses (redirects) with a large number of leading "L" characters.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
20- sourceforge.net/tracker/index.phpnvdExploit
- bugs.gentoo.org/show_bug.cginvd
- secunia.com/advisories/27124nvd
- secunia.com/advisories/27362nvd
- secunia.com/advisories/27609nvd
- secunia.com/advisories/27965nvd
- secunia.com/advisories/28930nvd
- secunia.com/advisories/29862nvd
- security.gentoo.org/glsa/glsa-200711-11.xmlnvd
- sourceforge.net/forum/forum.phpnvd
- sourceforge.net/tracker/index.phpnvd
- www.debian.org/security/2008/dsa-1495nvd
- www.mandriva.com/security/advisoriesnvd
- www.novell.com/linux/security/advisories/2007_25_sr.htmlnvd
- www.securityfocus.com/bid/25952nvd
- www.ubuntu.com/usn/usn-532-1nvd
- www.vupen.com/english/advisories/2007/3394nvd
- www.redhat.com/archives/fedora-package-announce/2008-April/msg00249.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-April/msg00282.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-April/msg00320.htmlnvd
News mentions
0No linked articles in our index yet.