Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-8011

Опубликовано: 18 июл. 2018
Источник: debian
EPSS Высокий

Описание

By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.33).

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache2fixed2.4.34-1package
apache2not-affectedstretchpackage
apache2not-affectedjessiepackage

Примечания

  • https://www.openwall.com/lists/oss-security/2018/07/18/2

  • https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2018-8011

EPSS

Процентиль: 99%
0.81522
Высокий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 7 лет назад

By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.33).

CVSS3: 5.3
redhat
больше 7 лет назад

By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.33).

CVSS3: 7.5
nvd
больше 7 лет назад

By specially crafting HTTP requests, the mod_md challenge handler would dereference a NULL pointer and cause the child process to segfault. This could be used to DoS the server. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.33).

CVSS3: 7.5
fstec
почти 8 лет назад

Уязвимость обработчика задач mod_md веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании

suse-cvrf
больше 7 лет назад

Security update for apache2

EPSS

Процентиль: 99%
0.81522
Высокий