Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-8566

Опубликовано: 03 нояб. 2014
Источник: redhat
CVSS2: 5

Описание

The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via unspecified vectors related to a "session overflow" involving "sessions overlapping in memory."

An information disclosure flaw was found in mod_auth_mellon's session handling that could lead to session overlapping in memory. A remote attacker could potentially use this flaw to obtain data from another user's session.

Дополнительная информация

Статус:

Important
Дефект:
CWE-200
https://bugzilla.redhat.com/show_bug.cgi?id=1157281mod_auth_mellon: remote memory disclosure flaw

5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 11 лет назад

The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via unspecified vectors related to a "session overflow" involving "sessions overlapping in memory."

nvd
почти 11 лет назад

The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via unspecified vectors related to a "session overflow" involving "sessions overlapping in memory."

debian
почти 11 лет назад

The mod_auth_mellon module before 0.8.1 allows remote attackers to obt ...

github
больше 3 лет назад

The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via unspecified vectors related to a "session overflow" involving "sessions overlapping in memory."

oracle-oval
почти 11 лет назад

ELSA-2014-1803: mod_auth_mellon security update (IMPORTANT)

5 Medium

CVSS2