Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-1333

Опубликовано: 18 июн. 2018
Источник: debian
EPSS Средний

Описание

By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than necessary, leading to worker exhaustion and a denial of service. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.18-2.4.30,2.4.33).

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache2fixed2.4.34-1package
apache2fixed2.4.25-3+deb9u6stretchpackage
apache2not-affectedjessiepackage

Примечания

  • Affects 2.4.18-2.4.33

  • HTTP/2 support introduced in 2.4.17

  • https://www.openwall.com/lists/oss-security/2018/07/18/1

  • https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2018-1333

EPSS

Процентиль: 94%
0.15119
Средний

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 7 лет назад

By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than necessary, leading to worker exhaustion and a denial of service. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.18-2.4.30,2.4.33).

CVSS3: 5.3
redhat
больше 7 лет назад

By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than necessary, leading to worker exhaustion and a denial of service. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.18-2.4.30,2.4.33).

CVSS3: 7.5
nvd
больше 7 лет назад

By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than necessary, leading to worker exhaustion and a denial of service. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.18-2.4.30,2.4.33).

suse-cvrf
больше 7 лет назад

Security update for apache2

suse-cvrf
больше 7 лет назад

Security update for apache2

EPSS

Процентиль: 94%
0.15119
Средний