Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r3pv-69hm-fcjw

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.

Ссылки

EPSS

Процентиль: 100%
0.9334
Критический

Дефекты

CWE-400

Связанные уязвимости

ubuntu
почти 14 лет назад

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.

redhat
почти 14 лет назад

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.

nvd
почти 14 лет назад

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.

debian
почти 14 лет назад

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2. ...

oracle-oval
почти 14 лет назад

ELSA-2011-1245: httpd security update (IMPORTANT)

EPSS

Процентиль: 100%
0.9334
Критический

Дефекты

CWE-400