4.7

CVE-2007-3304

Exploit

Apache httpd 1.3.37, 2.0.59, and 2.2.4 with the Prefork MPM module, allows local users to cause a denial of service by modifying the worker_score and process_score arrays to reference an arbitrary process ID, which is sent a SIGUSR1 signal from the master process, aka "SIGUSR1 killer."

Data is provided by the National Vulnerability Database (NVD)
ApacheHTTP Server Version >= 1.3.0 < 1.3.39
ApacheHTTP Server Version >= 2.0.0 < 2.0.61
ApacheHTTP Server Version >= 2.2.0 < 2.2.6
FedoraprojectFedora Version7
CanonicalUbuntu Linux Version6.06
CanonicalUbuntu Linux Version6.10
CanonicalUbuntu Linux Version7.04
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.21% 0.432
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.7 3.4 6.9
AV:L/AC:M/Au:N/C:N/I:N/A:C
http://bugs.gentoo.org/show_bug.cgi?id=186219
Third Party Advisory
Issue Tracking
http://secunia.com/advisories/26273
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26842
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26211
Vendor Advisory
Not Applicable
http://securityreason.com/securityalert/2814
Third Party Advisory
Exploit
http://www.securityfocus.com/bid/24215
Third Party Advisory
VDB Entry
http://marc.info/?l=apache-httpd-dev&m=118252946632447&w=2
Third Party Advisory
Mailing List
Issue Tracking
http://secunia.com/advisories/25827
Vendor Advisory
Not Applicable
http://secunia.com/advisories/25830
Vendor Advisory
Not Applicable
http://secunia.com/advisories/25920
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26443
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26508
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26611
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26759
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26790
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26822
Vendor Advisory
Not Applicable
http://secunia.com/advisories/26993
Vendor Advisory
Not Applicable
http://www.securitytracker.com/id?1018304
Third Party Advisory
Broken Link
VDB Entry