Heap-based buffer overflow in Null HTTP Server 0.5.0 and earlier allows remote attackers to execute arbitrary code via a negative value in the Content-Length HTTP header.
No PoCs from references.
- https://github.com/mudongliang/LinuxFlaw
- https://github.com/oneoy/cve-