qDecoder Remote Buffer Overflow

by evilnop on February 4th, 2001 qDecoder is an Ansi C Library for development of CGI software using C/C++. Improperly validated user-supplied input to an affected script via the Content-Type header can create a buffer overflow condition.

As a result, excessive data (exceeding 254 characters) copied onto the
stack can overwrite critical parts of the stack frame such as the calling
functions' return address.

Since this data is supplied by the user it can be crafted so that it alters
the program's flow of execution.

