htpparseauthorizationdigest in htpparsers.c in LibHTP 0.5.26 allows remote attackers to cause a heap-based buffer over-read via an authorization digest header.
{ "urgency": "not yet assigned" }