The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.
Integer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB 1.3.4 through 1.3.7, when the configuration sets httpMaxContentLength to a zero value, allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via a large integer in the Content-Length HTTP header, aka bug #3001915. NOTE: some of these details are obtained from third party information.
|89681||VMware ESX / ESXi Third-Party Libraries Multiple Vulnerabilities (VMSA-2011-0013) (remote check)||Nessus||Misc.|
|56665||VMSA-2011-0013 : VMware third-party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX||Nessus||VMware ESX Local Security Checks|
|49152||Fedora 13 : sblim-sfcb-1.3.8-1.fc13 (2010-10323)||Nessus||Fedora Local Security Checks|
|49104||Fedora 12 : sblim-sfcb-1.3.8-1.fc12 (2010-12847)||Nessus||Fedora Local Security Checks|
|46802||SBLIM-SFCB Multiple Buffer Overflows||Nessus||Web Servers|