Описание
A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash. This issue affects Apache HTTP Server 2.4.54 and earlier.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 2.4.29-1ubuntu4.26 |
| devel | released | 2.4.55-1ubuntu1 |
| esm-infra-legacy/trusty | needed | |
| esm-infra/bionic | released | 2.4.29-1ubuntu4.26 |
| esm-infra/focal | released | 2.4.41-4ubuntu3.13 |
| esm-infra/xenial | released | 2.4.18-2ubuntu3.17+esm8 |
| focal | released | 2.4.41-4ubuntu3.13 |
| jammy | released | 2.4.52-1ubuntu4.3 |
| kinetic | released | 2.4.54-2ubuntu1.1 |
| lunar | released | 2.4.55-1ubuntu1 |
Показывать по
Ссылки на источники
7.5 High
CVSS3
Связанные уязвимости
A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash. This issue affects Apache HTTP Server 2.4.54 and earlier.
A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash. This issue affects Apache HTTP Server 2.4.54 and earlier.
A carefully crafted If: request header can cause a memory read, or wri ...
A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash. This issue affects Apache HTTP Server 2.4.54 and earlier.
Уязвимость модуля mod_dav веб-сервера Apache HTTP Server, позволяющая нарушителю вызвать отказ в обслуживании
7.5 High
CVSS3