Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2003-0843

Опубликовано: 17 нояб. 2003
Источник: debian
EPSS Низкий

Описание

Format string vulnerability in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode and using the Apache log, allows remote attackers to execute arbitrary code via format string characters in an HTTP GET request with an "Accept-Encoding: gzip" header.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libapache-mod-gzipunfixedpackage

Примечания

  • Debian doesn't enable vulnerable debug mode.

EPSS

Процентиль: 82%
0.01734
Низкий

Связанные уязвимости

nvd
около 22 лет назад

Format string vulnerability in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode and using the Apache log, allows remote attackers to execute arbitrary code via format string characters in an HTTP GET request with an "Accept-Encoding: gzip" header.

github
почти 4 года назад

Format string vulnerability in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode and using the Apache log, allows remote attackers to execute arbitrary code via format string characters in an HTTP GET request with an "Accept-Encoding: gzip" header.

EPSS

Процентиль: 82%
0.01734
Низкий