Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-3946

Опубликовано: 24 июл. 2007
Источник: ubuntu
Приоритет: medium
CVSS2: 6.4

Описание

mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.

РелизСтатусПримечание
dapper

released

1.4.11-3ubuntu3.5
devel

not-affected

edgy

released

1.4.13~r1370-1ubuntu1.3
feisty

released

1.4.13-9ubuntu4.2
gutsy

not-affected

upstream

released

1.4.16

Показывать по

Ссылки на источники

6.4 Medium

CVSS2

Связанные уязвимости

nvd
около 18 лет назад

mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.

debian
около 18 лет назад

mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attacke ...

github
больше 3 лет назад

mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.

6.4 Medium

CVSS2