← All CVEs

CVE-2011-5124

high · 10

Stack-based buffer overflow in the BCAAA component before build 60258, as used by Blue Coat ProxySG 4.2.3 through 6.1 and ProxyOne, allows remote attackers to execute arbitrary code via a large packet to the synchronization port (16102/tcp).

10
CVSS
54.6%
EPSS (exploit prob.)
99th
EPSS percentile
2012-08-26
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
bluecoatproxyoneall versions
bluecoatproxysg4.2.6
bluecoatproxysg4.3.2.3
bluecoatproxysg5.1
bluecoatproxysg5.1.6.1
bluecoatproxysg5.2
bluecoatproxysg5.2.2.4
bluecoatproxysg5.2.5.2
bluecoatproxysg5.3
bluecoatproxysg5.3.2.1
bluecoatproxysg5.4
bluecoatproxysg5.4.1.1
bluecoatproxysg6

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-5124