漏洞信息详情
Apache 安全漏洞
- CNNVD编号:CNNVD-200210-250
- 危害等级: 高危
- CVE编号:
CVE-2002-0843
- 漏洞类型:
其他
- 发布时间:
2002-10-11
- 威胁类型:
远程
- 更新时间:
2021-03-31
- 厂 商:
oracle - 漏洞来源:
Discovery of this … -
漏洞简介
Apache 1.3.27之前版本和Apache 2.x 2.0.43之前版本中ApacheBench基准支持程序(ab.c)存在缓冲区溢出漏洞。恶意web服务器可以借助超长回复导致服务拒绝并且可能执行任意代码。
漏洞公告
Please see the references for vendor advisories and fixes.
This issue has been addressed in Apache 1.3.27.
Sun Cobalt RaQ 4
-
Sun RaQ4-All-Security-2.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/raq4/eng/RaQ4-All-Security-2.0.1-16343.pkg“>
http://ftp.cobalt.sun.com/pub/packages/raq4/eng/RaQ4-All-Security-2.0.
Sun Cobalt RaQ XTR
-
Sun RaQ550-All-Security-0.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/raq550/all/RaQ550-All-Security-0.0.1-16343.pkg“>
http://ftp.cobalt.sun.com/pub/packages/raq550/all/RaQ550-All-Security- -
Sun RaQXTR-All-Security-1.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/raqxtr/eng/RaQXTR-All-Security-1.0.1-16343.pkg“>
http://ftp.cobalt.sun.com/pub/packages/raqxtr/eng/RaQXTR-All-Security-
Sun Cobalt RaQ 550
-
Sun RaQ550-All-Security-0.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/raq550/all/RaQ550-All-Security-0.0.1-16343.pkg“>
http://ftp.cobalt.sun.com/pub/packages/raq550/all/RaQ550-All-Security-
Sun Cobalt Qube 3
-
Sun Qube3-All-Security-4.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/qube3/ml/Qube3-All-Security-4.0.1-16343.pkg“>
http://ftp.cobalt.sun.com/pub/packages/qube3/ml/Qube3-All-Security-4.0
Apache Software Foundation Apache 1.3.19
-
EnGarde Secure Linux apache-1.3.27-1.0.32.i386.rpm
ftp://ftp.engardelinux.org/pub/engarde/stable/updates/i386/apache-1.3.
-
EnGarde Secure Linux apache-1.3.27-1.0.32.i686.rpm
ftp://ftp.engardelinux.org/pub/engarde/stable/updates/i686/apache-1.3.
Apache Software Foundation Apache 1.3.20
-
Apache Software Foundation apache_1.3.27.tar.gz
-
MandrakeSoft apache-1.3.20-5.2mdk.i586.rpmSingle Network Firewall 7.2
-
MandrakeSoft apache-common-1.3.20-5.2mdk.i586.rpmSingle Network Firewall 7.2
-
MandrakeSoft apache-devel-1.3.20-5.2mdk.i586.rpmSingle Network Firewall 7.2
-
MandrakeSoft apache-manual-1.3.20-5.2mdk.i586.rpmSingle Network Firewall 7.2
-
MandrakeSoft apache-mod_perl-1.3.20_1.24-5.2mdk.i586.rpmSingle Network Firewall 7.2
-
MandrakeSoft apache-mod_perl-devel-1.3.20_1.24-5.2mdk.i586.rpmSingle Network Firewall 7.2
-
MandrakeSoft apache-suexec-1.3.20-5.2mdk.i586.rpmSingle Network Firewall 7.2
-
MandrakeSoft HTML-Embperl-1.3b6-5.2mdk.i586.rpmSingle Network Firewall 7.2
Apache Software Foundation Apache 1.3.22
-
Apache Software Foundation apache_1.3.27.tar.gz
-
Conectiva apache-1.3.26-1U70_7cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/apache-1.3.26-1U70_7cl.i3
-
Conectiva apache-1.3.26-1U8_4cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/apache-1.3.26-1U8_4cl.i386.
-
Conectiva apache-devel-1.3.26-1U70_7cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/apache-devel-1.3.26-1U70_
-
Conectiva apache-devel-1.3.26-1U8_4cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/apache-devel-1.3.26-1U8_4cl
-
Conectiva apache-doc-1.3.26-1U70_7cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/apache-doc-1.3.26-1U70_7c
-
Conectiva apache-doc-1.3.26-1U8_4cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/apache-doc-1.3.26-1U8_4cl.i
-
MandrakeSoft apache-1.3.22-10.2mdk.i586.rpmLinux-Mandrake 7.2
-
MandrakeSoft apache-1.3.22-10.2mdk.i586.rpmMandrake Linux 8.0
-
MandrakeSoft apache-1.3.22-10.2mdk.i586.rpmMandrake Linux 8.1
-
MandrakeSoft apache-1.3.22-10.2mdk.ia64.rpmMandrake Linux 8.1/ia64
-
MandrakeSoft apache-1.3.22-10.2mdk.ppc.rpmMandrake Linux 8.0/ppc
-
MandrakeSoft apache-common-1.3.22-10.2mdk.i586.rpmLinux-Mandrake 7.2
-
MandrakeSoft apache-common-1.3.22-10.2mdk.i586.rpmMandrake Linux 8.0
-
MandrakeSoft apache-common-1.3.22-10.2mdk.i586.rpmMandrake Linux 8.1
-
MandrakeSoft apache-common-1.3.22-10.2mdk.ia64.rpmMandrake Linux 8.1/ia64
-
MandrakeSoft apache-common-1.3.22-10.2mdk.ppc.rpmMandrake Linux 8.0/ppc
-
MandrakeSoft apache-devel-1.3.22-10.2mdk.i586.rpmLinux-Mandrake 7.2
-
MandrakeSoft apa
参考网址
来源:XF
链接:http://www.iss.net/security_center/static/10281.php
来源:VUPEN
链接:http://www.vupen.com/english/advisories/2006/3263
来源:SECUNIA
链接:http://secunia.com/advisories/21425
来源:ENGARDE
链接:http://www.linuxsecurity.com/advisories/other_advisory-2414.html
来源:MANDRAKE
链接:http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-068.php
来源:BUGTRAQ
链接:http://archives.neohapsis.com/archives/bugtraq/2002-10/0229.html
来源:BID
链接:https://www.securityfocus.com/bid/5995
来源:BID
链接:https://www.securityfocus.com/bid/5996
来源:BUGTRAQ
链接:http://marc.info/?l=bugtraq&m=103376585508776&w=2
来源:CONECTIVA
链接:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000530
来源:CONFIRM
链接:http://www.apacheweek.com/issues/02-10-04
来源:DEBIAN
链接:https://www.debian.org/security/2002/dsa-195
来源:httpd.apache.org%3E
链接:httpd.apache.org%3E
来源:MLIST
来源:BID
链接:https://www.securityfocus.com/bid/5887
来源:MLIST
来源:HP
链接:http://online.securityfocus.com/advisories/4617
来源:CONECTIVA
链接:http://distro.conectiva.com/atualizacoes/?id=a&anuncio=000530
来源:MLIST
来源:DEBIAN
链接:https://www.debian.org/security/2002/dsa-188
来源:DEBIAN
链接:https://www.debian.org/security/2002/dsa-187
来源:AIXAPAR
链接:http://www-1.ibm.com/support/search.wss?rs=0&q=IY87070&apar=only
来源:httpd-announce&m=103367938230488&w=2
链接:httpd-announce&m=103367938230488&w=2
来源:CONFIRM
链接:http://marc.info/?l=apache-
来源:MLIST
来源:CONFIRM
链接:http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=2871
来源:BUGTRAQ
链接:http://archives.neohapsis.com/archives/bugtraq/2002-10/0254.html