[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2237-1 apr -- denial of service

ID: oval:org.secpod.oval:def:600527Date: (C)2011-05-16   (M)2024-04-03
Class: PATCHFamily: unix




A flaw was found in the APR library, which could be exploited through Apache HTTPD"s mod_autoindex. If a directory indexed by mod_autoindex contained files with sufficiently long names, a remote attacker could send a carefully crafted request which would cause excessive CPU usage. This could be used in a denial of service attack.

Platform:
Debian 5.0
Debian 6.0
Product:
libapr1
Reference:
DSA-2237-1
CVE-2011-0419
CVE    1
CVE-2011-0419
CPE    3
cpe:/a:apache:libapr1
cpe:/o:debian:debian_linux:5.0
cpe:/o:debian:debian_linux:6.0

© SecPod Technologies