Lucene search

K
freebsdFreeBSD492F8896-70FA-11D8-873F-0020ED76EF5A
HistoryFeb 20, 2004 - 12:00 a.m.

Apache 2 mod_ssl denial-of-service

2004-02-2000:00:00
vuxml.freebsd.org
16

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

0.016 Low

EPSS

Percentile

87.4%

Joe Orton reports a memory leak in Apache 2’s mod_ssl.
A remote attacker may issue HTTP requests on an HTTPS
port, causing an error. Due to a bug in processing this
condition, memory associated with the connection is
not freed. Repeated requests can result in consuming
all available memory resources, probably resulting in
termination of the Apache process.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchapache= 2.0UNKNOWN
FreeBSDanynoarchapache<= 2.0.48_3UNKNOWN

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

0.016 Low

EPSS

Percentile

87.4%