AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-1027

MEDIUM · CVSS 5 EPSS 3.75%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-03-20 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2011-1027
Severity
MEDIUM
CVSS
5
EPSS
3.75%

Original NVD Description

Off-by-one error in the convert_query_hexchar function in html.c in cgit.cgi in cgit before 0.8.3.5 allows remote attackers to cause a denial of service (infinite loop) via a string composed of a % (percent) character followed by invalid hex characters, as demonstrated by a %gg sequence.