CVE-2017-1000118: Buffer Overflow
Published Oct 4, 2017
·Updated
Akka HTTP versions <= 10.0.5 Illegal Media Range in Accept Header Causes StackOverflowError Leading to Denial of Service
Affected Software
1 affected component
Akka Http Server<=10.0.5
Event History
Oct 4, 2017
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-1000118?
CVE-2017-1000118 has a severity rating of high due to its potential to cause a Denial of Service through a StackOverflowError.
2
How do I fix CVE-2017-1000118?
To fix CVE-2017-1000118, upgrade Akka HTTP to version 10.0.6 or later.
3
What version of Akka HTTP is affected by CVE-2017-1000118?
CVE-2017-1000118 affects Akka HTTP versions 10.0.5 and earlier.
4
What type of vulnerability is CVE-2017-1000118?
CVE-2017-1000118 is an application vulnerability that leads to a denial of service due to an illegal media range in the Accept header.
5
Can CVE-2017-1000118 be exploited remotely?
Yes, CVE-2017-1000118 can be exploited remotely by sending specially crafted requests to an affected Akka HTTP server.