Integer Overflow Vulnerability in Lighttpd Web Server
CVE-2019-11072
What is CVE-2019-11072?
Lighttpd versions prior to 1.4.54 contain a vulnerability characterized by a signed integer overflow. This flaw could enable remote attackers to trigger a denial of service, causing the application to crash through a specially crafted HTTP GET request. The issue arises particularly when the new feature introduced in version 1.4.50 is enabled via configuration. When corrupt input is processed, lighttpd may invoke an abort due to the inability to handle the underflow, leading to an application exit. Notably, the feature must be explicitly activated in the configuration file (lighttpd.conf) for exploitation to occur.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
EPSS Score
12% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
