Back to search
CVE-2008-2364
Published: Jun 13, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
The ap_proxy_http_process_response function in mod_proxy_http.c in the mod_proxy module in the Apache HTTP Server 2.0.63 and 2.2.8 does not limit the number of forwarded interim responses, which allows remote HTTP servers to cause a denial of service (memory consumption) via a large number of interim responses.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
SUSE-SR:2009:007
vendor-advisory
x_refsource_SUSE
34259
third-party-advisory
x_refsource_SECUNIA
34219
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:11713
vdb-entry
signature
x_refsource_OVAL
31026
third-party-advisory
x_refsource_SECUNIA
HPSBUX02465
vendor-advisory
x_refsource_HP
31651
third-party-advisory
x_refsource_SECUNIA
247666
vendor-advisory
x_refsource_SUNALERT
31681
vdb-entry
x_refsource_BID
32838
third-party-advisory
x_refsource_SECUNIA
20081122 rPSA-2008-0328-1 httpd mod_ssl
mailing-list
x_refsource_BUGTRAQ
31904
third-party-advisory
x_refsource_SECUNIA
http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html
x_refsource_CONFIRM
RHSA-2008:0967
vendor-advisory
x_refsource_REDHAT
29653
vdb-entry
x_refsource_BID
SSRT090192
vendor-advisory
x_refsource_HP
34418
third-party-advisory
x_refsource_SECUNIA
30621
third-party-advisory
x_refsource_SECUNIA
32685
third-party-advisory
x_refsource_SECUNIA
apache-modproxy-module-dos(42987)
vdb-entry
x_refsource_XF
SUSE-SR:2009:006
vendor-advisory
x_refsource_SUSE
31416
third-party-advisory
x_refsource_SECUNIA
1020267
vdb-entry
x_refsource_SECTRACK
USN-731-1
vendor-advisory
x_refsource_UBUNTU
ADV-2009-0320
vdb-entry
x_refsource_VUPEN
HPSBUX02365
vendor-advisory
x_refsource_HP
http://www-01.ibm.com/support/docview.wss?uid=swg27008517
x_refsource_CONFIRM
oval:org.mitre.oval:def:9577
vdb-entry
signature
x_refsource_OVAL
32222
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:6084
vdb-entry
signature
x_refsource_OVAL
RHSA-2008:0966
vendor-advisory
x_refsource_REDHAT
33156
third-party-advisory
x_refsource_SECUNIA
33797
third-party-advisory
x_refsource_SECUNIA
20080729 rPSA-2008-0236-1 httpd mod_ssl
mailing-list
x_refsource_BUGTRAQ
31404
third-party-advisory
x_refsource_SECUNIA
FEDORA-2008-6393
vendor-advisory
x_refsource_FEDORA
GLSA-200807-06
vendor-advisory
x_refsource_GENTOO
ADV-2008-2780
vdb-entry
x_refsource_VUPEN
HPSBUX02401
vendor-advisory
x_refsource_HP
MDVSA-2008:237
vendor-advisory
x_refsource_MANDRIVA
FEDORA-2008-6314
vendor-advisory
x_refsource_FEDORA
ADV-2008-1798
vdb-entry
x_refsource_VUPEN
APPLE-SA-2008-10-09
vendor-advisory
x_refsource_APPLE
http://support.apple.com/kb/HT3216
x_refsource_CONFIRM
MDVSA-2008:195
vendor-advisory
x_refsource_MANDRIVA
SSRT080118
vendor-advisory
x_refsource_HP
PK67579
vendor-advisory
x_refsource_AIXAPAR
SSRT090005
vendor-advisory
x_refsource_HP
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0328
x_refsource_CONFIRM
[httpd-cvs] 20210330 svn commit: r1073139 [1/13] - in /websites/staging/httpd/trunk/content: ./ security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1888194 [5/13] - /httpd/site/trunk/content/security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1073139 [5/13] - in /websites/staging/httpd/trunk/content: ./ security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1073143 [2/3] - in /websites/staging/httpd/trunk/content: ./ security/
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now