5

CVE-2012-3526

The reverse proxy add forward module (mod_rpaf) 0.5 and 0.6 for the Apache HTTP Server allows remote attackers to cause a denial of service (server or application crash) via multiple X-Forwarded-For headers in a request.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Thomas Eibner ≫ Mod Rpaf Version 0.5
   Apache ≫ HTTP Server
Thomas Eibner ≫ Mod Rpaf Version 0.6
   Apache ≫ HTTP Server
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 6.95% 0.933
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=683984
http://secunia.com/advisories/50400
Vendor Advisory
http://www.debian.org/security/2012/dsa-2532
http://www.openwall.com/lists/oss-security/2012/08/22/2
http://www.openwall.com/lists/oss-security/2012/08/22/7
http://www.securityfocus.com/bid/55154
http://zecrazytux.net/troubleshooting/apache2-segfault-debugging-tutorial
https://exchange.xforce.ibmcloud.com/vulnerabilities/77987