Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-77mj-xh9q-fm9j

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow

EPSS

Процентиль: 91%
0.0656
Низкий

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.3
ubuntu
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow

CVSS3: 7.3
redhat
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow

CVSS3: 7.3
nvd
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow

CVSS3: 7.3
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.3
debian
около 4 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest ...

EPSS

Процентиль: 91%
0.0656
Низкий

Дефекты

CWE-787