CVE-2003-0899

Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contain ‘<' or '>‘ characters, which trigger the overflow when the characters are expanded to "<" and ">" sequences.

Date published : 2003-10-30

http://www.securityfocus.com/bid/8906

http://marc.info/?l=bugtraq&m=106729188224252&w=2