Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-4557

Опубликовано: 04 янв. 2012
Источник: redhat
CVSS2: 2.6
EPSS Средний

Описание

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

Отчет

This issue did not affect the version of httpd as shipped with Red Hat Enterprise Linux 5.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4httpdNot affected
Red Hat Enterprise Linux 5httpdNot affected
JBEWS 1.0 for RHEL 4antFixedRHSA-2011:089722.06.2011
JBEWS 1.0 for RHEL 4antlrFixedRHSA-2011:089722.06.2011
JBEWS 1.0 for RHEL 4bcelFixedRHSA-2011:089722.06.2011
JBEWS 1.0 for RHEL 4cglibFixedRHSA-2011:089722.06.2011
JBEWS 1.0 for RHEL 4dom4jFixedRHSA-2011:089722.06.2011
JBEWS 1.0 for RHEL 4ecjFixedRHSA-2011:089722.06.2011
JBEWS 1.0 for RHEL 4glassfish-jafFixedRHSA-2011:089722.06.2011
JBEWS 1.0 for RHEL 4glassfish-javamailFixedRHSA-2011:089722.06.2011

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=871685httpd: mod_proxy_ajp worker moved to error state when timeout exceeded

EPSS

Процентиль: 96%
0.29065
Средний

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
больше 12 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

nvd
больше 12 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

debian
больше 12 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2. ...

github
больше 3 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

oracle-oval
больше 12 лет назад

ELSA-2013-0512: httpd security, bug fix, and enhancement update (LOW)

EPSS

Процентиль: 96%
0.29065
Средний

2.6 Low

CVSS2