Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11119
HistoryJan 15, 2019 - 8:57 a.m.

Denial Of Service (DoS)

2019-01-1508:57:18
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
21

EPSS

0.459

Percentile

97.4%

httpd is vulnerable to denial of service (DoS) attacks. The vulnerability exists as the deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denial of service (resource consumption) via crafted request data that decompresses to a much larger size.

References