Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-10082

Опубликовано: 14 авг. 2019
Источник: redhat
CVSS3: 6.5
EPSS Средний

Описание

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

A read-after-free vulnerability was discovered in Apache httpd, in mod_http2. A specially crafted http/2 client session could cause the server to read memory that was previously freed during connection shutdown, potentially leading to a crash.

Меры по смягчению последствий

This flaw is only exploitable if Apache httpd is configured to respond to HTTP/2 requests, which is done by including "h2" or "h2c" in the "Protocols" list in a configuration file. The following command can be used to search for possible vulnerable configurations: grep -R '^\sProtocols>.<h2>' /etc/httpd/ See https://httpd.apache.org/docs/2.4/mod/mod_http2.html

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5httpdNot affected
Red Hat Enterprise Linux 6httpdNot affected
Red Hat Enterprise Linux 7httpdNot affected
Red Hat JBoss Enterprise Web Server 2httpdOut of support scope
Red Hat JBoss Enterprise Web Server 2httpd22Out of support scope
Red Hat JBoss Web Server 3httpd24Out of support scope
Red Hat Software Collectionshttpd24-httpdWill not fix
JBoss Core Services Apache HTTP Server 2.4.37 SP2httpdFixedRHSA-2020:133606.04.2020
JBoss Core Services on RHEL 6jbcs-httpd24-aprFixedRHSA-2020:133706.04.2020
JBoss Core Services on RHEL 6jbcs-httpd24-brotliFixedRHSA-2020:133706.04.2020

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1743974httpd: read-after-free in h2 connection shutdown

EPSS

Процентиль: 97%
0.41329
Средний

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 5 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

CVSS3: 9.1
nvd
больше 5 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

CVSS3: 9.1
debian
больше 5 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the h ...

CVSS3: 9.1
github
около 3 лет назад

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.

CVSS3: 9.1
fstec
около 6 лет назад

Уязвимость реализации сетевого протокола HTTP/2 веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 97%
0.41329
Средний

6.5 Medium

CVSS3