Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-4557

Опубликовано: 04 янв. 2012
Источник: redhat
CVSS2: 2.6
EPSS Средний

Описание

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

Отчет

This issue did not affect the version of httpd as shipped with Red Hat Enterprise Linux 5.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4httpdNot affected
Red Hat Enterprise Linux 5httpdNot affected
Red Hat Enterprise Linux 6httpdFixedRHSA-2013:051220.02.2013
Red Hat JBoss Enterprise Web Server 1 for RHEL 5antFixedRHSA-2011:089722.06.2011
Red Hat JBoss Enterprise Web Server 1 for RHEL 5antlrFixedRHSA-2011:089722.06.2011
Red Hat JBoss Enterprise Web Server 1 for RHEL 5cglibFixedRHSA-2011:089722.06.2011
Red Hat JBoss Enterprise Web Server 1 for RHEL 5dom4jFixedRHSA-2011:089722.06.2011
Red Hat JBoss Enterprise Web Server 1 for RHEL 5ecj3FixedRHSA-2011:089722.06.2011
Red Hat JBoss Enterprise Web Server 1 for RHEL 5glassfish-jsfFixedRHSA-2011:089722.06.2011
Red Hat JBoss Enterprise Web Server 1 for RHEL 5hibernate3FixedRHSA-2011:089722.06.2011

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=871685httpd: mod_proxy_ajp worker moved to error state when timeout exceeded

EPSS

Процентиль: 97%
0.1747
Средний

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
почти 14 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

nvd
почти 14 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

debian
почти 14 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2. ...

github
больше 4 лет назад

The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.

oracle-oval
больше 13 лет назад

ELSA-2013-0512: httpd security, bug fix, and enhancement update (LOW)

EPSS

Процентиль: 97%
0.1747
Средний

2.6 Low

CVSS2