title: cve-2004-0785-00
date: 2004-08-26T00:00:00.000Z
cveNumber: cve-2004-0785
summary: URL decode buffer overflow
discoveredBy: Sean (infamous42md)
fixedInRelease: 0.82
type: security
type: security

### Description
Buffer overflow. The URL is decoded into a static buffer of length 2048 bytes.
I'm not sure it's possible to receive a URL longer than 2048 bytes, as many
protocols have message limits that are shorter than that.
### Mitigation
A check to make sure the source string is shorter than 2048 bytes is performed.