[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2017:2882 -- centos 7 httpd

ID: oval:org.secpod.oval:def:204571Date: (C)2017-10-13   (M)2024-02-19
Class: PATCHFamily: unix




The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server. Security Fix: * A use-after-free flaw was found in the way httpd handled invalid and previously unregistered HTTP methods specified in the Limit directive used in an .htaccess file. A remote attacker could possibly use this flaw to disclose portions of the server memory, or cause httpd child process to crash. Red Hat would like to thank Hanno Bock for reporting this issue.

Platform:
CentOS 7
Product:
httpd
Reference:
CESA-2017:2882
CVE-2017-9798
CVE    1
CVE-2017-9798
CPE    16
cpe:/o:centos:centos:7
cpe:/a:apache:http_server:2.4.16
cpe:/a:apache:http_server:2.4.27
cpe:/a:apache:http_server:2.4.20
...

© SecPod Technologies