Search CVE reports
1 – 3 of 3 results
CVE-2025-23016
Medium prioritySome fixes available 4 of 7
FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values in data to the IPC socket. This occurs in ReadParams in fcgiapp.c.
1 affected package
libfcgi
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libfcgi | Fixed | Fixed | Vulnerable | Vulnerable |
CVE-2012-6687
Medium prioritySome fixes available 1 of 2
FastCGI (aka fcgi and libfcgi) 2.4.0 allows remote attackers to cause a denial of service (segmentation fault and crash) via a large number of connections.
1 affected package
libfcgi
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libfcgi | — | — | — | — |
CVE-2011-2766
Medium prioritySome fixes available 2 of 3
The FCGI (aka Fast CGI) module 0.70 through 0.73 for Perl, as used by CGI::Fast, uses environment variable values from one request during processing of a later request, which allows remote attackers to bypass authentication via...
1 affected package
libfcgi-perl
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libfcgi-perl | — | — | — | — |