Use-after-free in NGINX Open Source - CVE-2012-1180

 

Use-after-free in NGINX Open Source - CVE-2012-1180

Published: April 18, 2012 / Updated: July 28, 2020


Vulnerability identifier: #VU32813
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2012-1180
CWE-ID: CWE-416
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to compromise vulnerable system.

The vulnerability exists due to a use-after-free error when processing a crafted backend response, in conjunction with a client request. A remote HTTP servers can obtain sensitive information from process memory.

Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.


Affected software

NGINX Open Source
Amazon Linux AMI
Fedora
nginx (Alpine package)
nginx

How to mitigate CVE-2012-1180

The vendor has issued the following versions to address this vulnerability: 1.0.14, 1.1.17.

NGINX Open Source - addressed in versions 1.0.14, 1.1.17
nginx (Alpine package) - update to 0.8.55-r0
nginx - addressed in versions 0.8.55-2.el5, 1.0.14-1.el6

External References

Related Security Bulletins