Vulnerability Details CVE-2014-0133
Heap-based buffer overflow in the SPDY implementation in nginx 1.3.15 before 1.4.7 and 1.5.x before 1.5.12 allows remote attackers to execute arbitrary code via a crafted request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.209
EPSS Ranking 95.3%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2014-0133
-
cpe:2.3:a:f5:nginx:1.3.15
-
cpe:2.3:a:f5:nginx:1.3.16
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:f5:nginx:1.5.10
-
cpe:2.3:a:f5:nginx:1.5.11
-
-
-
-
-
-
-
-
-
cpe:2.3:o:opensuse:opensuse:13.1