{
  "modified": "2025-08-09T19:01:26Z",
  "published": "2011-11-30T04:05:58Z",
  "id": "CVE-2009-5028",
  "details": "Stack-based buffer overflow in Namazu before 2.0.20 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted request containing an empty uri field.",
  "references": [
    {
      "type": "FIX",
      "url": "http://cvs.namazu.org/namazu/src/result.c?sortdir=down\u0026r1=1.59.8.28\u0026r2=1.59.8.29\u0026sortby=log"
    },
    {
      "type": "FIX",
      "url": "http://cvs.namazu.org/namazu/src/result.c?sortdir=down\u0026r1=1.77.2.8\u0026r2=1.77.2.9\u0026sortby=log"
    },
    {
      "type": "FIX",
      "url": "http://cvs.namazu.org/namazu/src/result.c?sortdir=down\u0026r1=1.86\u0026r2=1.87\u0026sortby=log"
    },
    {
      "type": "FIX",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=756341"
    },
    {
      "type": "WEB",
      "url": "http://www.namazu.org/security.html"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/bid/50772"
    },
    {
      "type": "WEB",
      "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05385680"
    },
    {
      "type": "WEB",
      "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722"
    }
  ]
}
