Tracker / CVE-2004-0492
CVE-2004-0492
High 10.0
Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.
Affected products and versions
| apache | http_server |
|---|---|
| hp | virtualvault |
| hp | vvos |
| hp | webproxy |
| ibm | http_server |
| openbsd | openbsd |
| sgi | propack |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.