[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4164-1 apache2 -- apache2

ID: oval:org.secpod.oval:def:603350Date: (C)2018-04-04   (M)2024-01-29
Class: PATCHFamily: unix




Several vulnerabilities have been found in the Apache HTTPD server. CVE-2017-15710 Alex Nichols and Jakob Hirsch reported that mod_authnz_ldap, if configured with AuthLDAPCharsetConfig, could cause an of bound write if supplied with a crafted Accept-Language header. This could potentially be used for a Denial of Service attack. CVE-2017-15715 Elar Lang discovered that expression specified in FilesMatch could match "$" to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename. CVE-2018-1283 When mod_session is configured to forward its session data to CGI applications , a remote user could influence their content by using a Session header. CVE-2018-1301 Robert Swiecki reported that a specially crafted request could have crashed the Apache HTTP Server, due to an out of bound access after a size limit is reached by reading the HTTP header. CVE-2018-1303 Robert Swiecki reported that a specially crafted HTTP request header could have crashed the Apache HTTP Server if using mod_cache_socache, due to an out of bound read while preparing data to be cached in shared memory. CVE-2018-1312 Nicolas Daniels discovered that when generating an HTTP Digest authentication challenge, the nonce sent by mod_auth_digest to prevent reply attacks was not correctly generated using a pseudo-random seed. In a cluster of servers using a common Digest authentication configuration, HTTP requests could be replayed across servers by an attacker without detection.

Platform:
Debian 8.x
Debian 9.x
Product:
apache2
Reference:
DSA-4164-1
CVE-2017-15710
CVE-2017-15715
CVE-2018-1283
CVE-2018-1301
CVE-2018-1303
CVE-2018-1312
CVE    6
CVE-2017-15710
CVE-2017-15715
CVE-2018-1283
CVE-2018-1301
...
CPE    6
cpe:/o:debian:debian_linux:9.0
cpe:/a:apache:apache2
cpe:/o:debian:debian_linux:8.x
cpe:/o:debian:debian_linux:7.0
...

© SecPod Technologies