Apache 安全漏洞

漏洞信息详情

Apache 安全漏洞

漏洞简介

Apache 1.3.27之前版本和Apache 2.x 2.0.43之前版本中ApacheBench基准支持程序(ab.c)存在缓冲区溢出漏洞。恶意web服务器可以借助超长回复导致服务拒绝并且可能执行任意代码。

漏洞公告

Please see the references for vendor advisories and fixes.

This issue has been addressed in Apache 1.3.27.

Sun Cobalt RaQ 4

Sun Cobalt RaQ XTR

Sun Cobalt RaQ 550

Sun Cobalt Qube 3

Apache Software Foundation Apache 1.3.19

Apache Software Foundation Apache 1.3.20

Apache Software Foundation Apache 1.3.22

参考网址

来源:XF

链接:http://www.iss.net/security_center/static/10281.php

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2006/3263

来源:SECUNIA

链接:http://secunia.com/advisories/21425

来源:ENGARDE

链接:http://www.linuxsecurity.com/advisories/other_advisory-2414.html

来源:MANDRAKE

链接:http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-068.php

来源:BUGTRAQ

链接:http://archives.neohapsis.com/archives/bugtraq/2002-10/0229.html

来源:BID

链接:https://www.securityfocus.com/bid/5995

来源:BID

链接:https://www.securityfocus.com/bid/5996

来源:BUGTRAQ

链接:http://marc.info/?l=bugtraq&m=103376585508776&w=2

来源:CONECTIVA

链接:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000530

来源:CONFIRM

链接:http://www.apacheweek.com/issues/02-10-04

来源:DEBIAN

链接:https://www.debian.org/security/2002/dsa-195

来源:httpd.apache.org%3E

链接:httpd.apache.org%3E

来源:MLIST

链接:https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5@%3Ccvs.

来源:BID

链接:https://www.securityfocus.com/bid/5887

来源:MLIST

链接:https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9@%3Ccvs.

来源:HP

链接:http://online.securityfocus.com/advisories/4617

来源:CONECTIVA

链接:http://distro.conectiva.com/atualizacoes/?id=a&anuncio=000530

来源:MLIST

链接:https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920@%3Ccvs.

来源:DEBIAN

链接:https://www.debian.org/security/2002/dsa-188

来源:DEBIAN

链接:https://www.debian.org/security/2002/dsa-187

来源:AIXAPAR

链接:http://www-1.ibm.com/support/search.wss?rs=0&q=IY87070&apar=only

来源:httpd-announce&m=103367938230488&w=2

链接:httpd-announce&m=103367938230488&w=2

来源:CONFIRM

链接:http://marc.info/?l=apache-

来源:MLIST

链接:https://lists.apache.org/thread.html/rd00b45b93fda4a5bd013b28587207d0e00f99f6e3308dbb6025f3b01@%3Ccvs.

来源:CONFIRM

链接:http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=2871

来源:BUGTRAQ

链接:http://archives.neohapsis.com/archives/bugtraq/2002-10/0254.html

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享