Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-6438

Опубликовано: 18 мар. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 5

Описание

The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before 2.4.8 does not properly remove whitespace characters from CDATA sections, which allows remote attackers to cause a denial of service (daemon crash) via a crafted DAV WRITE request.

РелизСтатусПримечание
devel

released

2.4.7-1ubuntu3
lucid

released

2.2.14-5ubuntu8.13
precise

released

2.2.22-1ubuntu1.5
quantal

released

2.2.22-6ubuntu2.4
saucy

released

2.4.6-2ubuntu2.2
upstream

released

2.4.8

Показывать по

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 12 лет назад

The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before 2.4.8 does not properly remove whitespace characters from CDATA sections, which allows remote attackers to cause a denial of service (daemon crash) via a crafted DAV WRITE request.

nvd
больше 11 лет назад

The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before 2.4.8 does not properly remove whitespace characters from CDATA sections, which allows remote attackers to cause a denial of service (daemon crash) via a crafted DAV WRITE request.

debian
больше 11 лет назад

The dav_xml_get_cdata function in main/util.c in the mod_dav module in ...

github
больше 3 лет назад

The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before 2.4.8 does not properly remove whitespace characters from CDATA sections, which allows remote attackers to cause a denial of service (daemon crash) via a crafted DAV WRITE request.

oracle-oval
больше 11 лет назад

ELSA-2014-0370: httpd security update (MODERATE)

5 Medium

CVSS2