Description: A vulnerability has been reported in Nagios, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.
The vulnerability is caused due to an integer overflow error within the handling of the "Content-Length" HTTP header. This can be exploited to cause a buffer overflow and may allow arbitrary code execute via a HTTP request with specially crafted value in the "Content-Length" HTTP header.
The vulnerability has been reported in the 1.x and 2.x code branches.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.