Back to search
CVE-2005-1268
Published: Aug 5, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
SUSE-SR:2005:018
vendor-advisory
x_refsource_SUSE
SUSE-SA:2005:046
vendor-advisory
x_refsource_SUSE
http://support.avaya.com/elmodocs2/security/ASA-2006-081.htm
x_refsource_CONFIRM
TSLSA-2005-0059
vendor-advisory
x_refsource_TRUSTIX
oval:org.mitre.oval:def:1714
vdb-entry
signature
x_refsource_OVAL
SSRT051251
vendor-advisory
x_refsource_HP
MDKSA-2005:129
vendor-advisory
x_refsource_MANDRAKE
19185
third-party-advisory
x_refsource_SECUNIA
604
third-party-advisory
x_refsource_SREASON
oval:org.mitre.oval:def:9589
vdb-entry
signature
x_refsource_OVAL
HPSBUX02074
vendor-advisory
x_refsource_HP
oval:org.mitre.oval:def:1747
vdb-entry
signature
x_refsource_OVAL
19072
third-party-advisory
x_refsource_SECUNIA
RHSA-2005:582
vendor-advisory
x_refsource_REDHAT
14366
vdb-entry
x_refsource_BID
DSA-805
vendor-advisory
x_refsource_DEBIAN
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=163013
x_refsource_MISC
102198
vendor-advisory
x_refsource_SUNALERT
oval:org.mitre.oval:def:1346
vdb-entry
signature
x_refsource_OVAL
ADV-2006-0789
vdb-entry
x_refsource_VUPEN
[httpd-cvs] 20210330 svn commit: r1073139 [1/13] - in /websites/staging/httpd/trunk/content: ./ security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1073139 [3/13] - in /websites/staging/httpd/trunk/content: ./ security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1888194 [3/13] - /httpd/site/trunk/content/security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1073143 [2/3] - in /websites/staging/httpd/trunk/content: ./ security/
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now