5
CVE-2014-3523
- EPSS 35.24%
- Veröffentlicht 20.07.2014 11:12:50
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
Memory leak in the winnt_accept function in server/mpm/winnt/child.c in the WinNT MPM in the Apache HTTP Server 2.4.x before 2.4.10 on Windows, when the default AcceptFilter is enabled, allows remote attackers to cause a denial of service (memory consumption) via crafted requests.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Apache ≫ HTTP Server Version2.4.1
Apache ≫ HTTP Server Version2.4.2
Apache ≫ HTTP Server Version2.4.3
Apache ≫ HTTP Server Version2.4.4
Apache ≫ HTTP Server Version2.4.6
Apache ≫ HTTP Server Version2.4.7
Apache ≫ HTTP Server Version2.4.8
Apache ≫ HTTP Server Version2.4.9
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 35.24% | 0.969 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|