漏洞信息详情
Apache HTTP Server拒绝服务漏洞
- CNNVD编号:CNNVD-201108-440
- 危害等级: 高危
- CVE编号:
CVE-2011-3192
- 漏洞类型:
资源管理错误
- 发布时间:
2011-08-25
- 威胁类型:
远程
- 更新时间:
2021-06-07
- 厂 商:
apache - 漏洞来源:
-
漏洞简介
Apache HTTP Server是一款开源的流行的HTTPD服务程序。
当处理包含大量Ranges头的HTTP请求时,ByteRange过滤器存在一个错误,攻击者可以向服务器发送特制HTTP请求,消耗大量内存,造成应用程序崩溃。
参考网址
来源:CONFIRM
来源:CONFIRM
链接:http://www.gossamer-threads.com/lists/apache/dev/401638
来源:httpd.apache.org%3E
链接:httpd.apache.org%3E
来源:MLIST
来源:MLIST
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2011-11/msg00008.html
来源:MLIST
来源:HP
链接:http://marc.info/?l=bugtraq&m=131731002122529&w=2
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2011-11/msg00011.html
来源:MLIST
来源:SECUNIA
链接:http://secunia.com/advisories/45937
来源:CISCO
链接:http://www.cisco.com/en/US/products/products_security_advisory09186a0080b90d73.shtml
来源:EXPLOIT-DB
链接:http://www.exploit-db.com/exploits/17696
来源:MLIST
来源:MLIST
来源:MLIST
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2011-1294.html
来源:MLIST
来源:CONFIRM
链接:http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
来源:CONFIRM
链接:http://support.apple.com/kb/HT5002
来源:httpd
链接:httpd/Announcement2.2.html
来源:CONFIRM
链接:http://www.apache.org/dist/
来源:MLIST
来源:MANDRIVA
链接:http://www.mandriva.com/security/advisories?name=MDVSA-2011:130
来源:FULLDISC
链接:http://seclists.org/fulldisclosure/2011/Aug/175
来源:CONFIRM
链接:http://blogs.oracle.com/security/entry/security_alert_for_cve_2011
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2011-09/msg00010.html
来源:httpd-dev
链接:httpd-dev/201108.mbox/%3cCAAPSnn2PO-d-C4nQt_TES2RRWiZr7urefhTKPWBC1b+K1Dqc7g@mail.gmail.com%3e
来源:MLIST
链接:http://mail-archives.apache.org/mod_mbox/
来源:httpd-announce
链接:httpd-announce/201108.mbox/%3c20110824161640.122D387DD@minotaur.apache.org%3e
来源:MLIST
来源:HP
链接:http://marc.info/?l=bugtraq&m=131551295528105&w=2
来源:MLIST
来源:CONFIRM
链接:https://issues.apache.org/bugzilla/show_bug.cgi?id=51714
来源:APPLE
链接:http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html
来源:CERT-VN
链接:http://www.kb.cert.org/vuls/id/405811
来源:OVAL
链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14762
来源:CONFIRM
链接:http://www.oracle.com/technetwork/topics/security/alert-cve-2011-3192-485304.html
来源:SECUNIA
链接:http://secunia.com/advisories/46000
来源:SECUNIA
链接:http://secunia.com/advisories/46126
来源:MLIST
来源:SECUNIA
链接:http://secunia.com/advisories/46125
来源:MLIST
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2011-1245.html
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2011-1300.html
来源:CONFIRM
链接:http://www.oracle.com/technetwork/topics/security/cpujul2012-392727.html
来源:XF
链接:https://exchange.xforce.ibmcloud.com/vulnerabilities/69396
来源:UBUNTU
链接:http://www.ubuntu.com/usn/USN-1199-1
来源:MLIST
来源:HP
链接:http://marc.info/?l=bugtraq&m=134987041210674&w=2
来源:MLIST
来源:HP
链接:http://marc.info/?l=bugtraq&m=132033751509019&w=2
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2011-1330.html
来源:MLIST
来源:BID
链接:https://www.securityfocus.com/bid/49303
来源:MLIST
来源:FULLDISC
链接:http://archives.neohapsis.com/archives/fulldisclosure/2011-08/0285.html
来源:CONFIRM
链接:https://bugzilla.redhat.com/show_bug.cgi?id=732928
来源:MLIST
来源:SECUNIA
链接:http://secunia.com/advisories/45606
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2011-1329.html
来源:MLIST
来源:CONFIRM
链接:http://www.oracle.com/technetwork/topics/security/cpuoct2011-330135.html
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2011-09/msg00006.html
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2011-09/msg00009.html
来源:HP
链接:http://marc.info/?l=bugtraq&m=133477473521382&w=2
来源:REDHAT
链接:http://www.redhat.com/support/errata/RHSA-2011-1369.html
来源:MLIST
来源:SECTRACK
链接:http://securitytracker.com/id?1025960
来源:MANDRIVA
链接:http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2011-09/msg00011.html
来源:OSVDB
来源:OVAL
链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14824
来源:OVAL
链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18827
来源:HP