Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-4450

Опубликовано: 07 июн. 2016
Источник: debian
EPSS Низкий

Описание

os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, involving writing a client request body to a temporary file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nginxfixed1.10.1-1package
nginxnot-affectedwheezypackage

EPSS

Процентиль: 88%
0.04016
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 9 лет назад

os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, involving writing a client request body to a temporary file.

redhat
больше 9 лет назад

os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, involving writing a client request body to a temporary file.

CVSS3: 7.5
nvd
больше 9 лет назад

os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, involving writing a client request body to a temporary file.

CVSS3: 7.5
github
больше 3 лет назад

os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, involving writing a client request body to a temporary file.

CVSS3: 7.5
fstec
больше 9 лет назад

Уязвимость компонента os/unix/ngx_files.c платформы мониторинга и управления приложениями NGINX, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 88%
0.04016
Низкий