INN < 2.2.3 verifycancels Option Cancel Request Message Overflow
Low Nessus Plugin ID 10436
SynopsisThe remote host is affected by a remote buffer overflow vulnerability.
DescriptionThe remote version of INN is between 2.0 and 2.2.2
There is a known security flaw in this version of INN which may allow an attacker to execute arbitrary code on this server is the option 'verifycancels' is enabled in inn.conf
SolutionUpgrade to version 2.2.3 or make sure that the option verifycancel is disabled on this server.