Описание
nginx 0.8.36 allows remote attackers to cause a denial of service (crash) via certain encoded directory traversal sequences that trigger memory corruption, as demonstrated using the "%c0.%c0." sequence.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | windows only |
| hardy | not-affected | windows only |
| jaunty | ignored | end of life |
| karmic | ignored | end of life |
| lucid | not-affected | windows only |
| maverick | not-affected | windows only |
| natty | not-affected | windows only |
| upstream | needs-triage |
Показывать по
EPSS
5 Medium
CVSS2
Связанные уязвимости
nginx 0.8.36 allows remote attackers to cause a denial of service (crash) via certain encoded directory traversal sequences that trigger memory corruption, as demonstrated using the "%c0.%c0." sequence.
nginx 0.8.36 allows remote attackers to cause a denial of service (cra ...
nginx 0.8.36 allows remote attackers to cause a denial of service (crash) via certain encoded directory traversal sequences that trigger memory corruption, as demonstrated using the "%c0.%c0." sequence.
EPSS
5 Medium
CVSS2