Back to search
CVE-2012-0256
Published: Mar 26, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
Apache Traffic Server 2.0.x and 3.0.x before 3.0.4 and 3.1.x before 3.1.3 does not properly allocate heap memory, which allows remote attackers to cause a denial of service (daemon crash) via a long HTTP Host header.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20120322 [ANNOUNCE] Apache Traffic Server releases for security incident CVE-2012-0256
mailing-list
x_refsource_BUGTRAQ
20120322 [ANNOUNCE] Apache Traffic Server releases for security incident CVE-2012-0256
mailing-list
x_refsource_FULLDISC
52696
vdb-entry
x_refsource_BID
https://www.cert.fi/en/reports/2012/vulnerability612884.html
x_refsource_MISC
1026847
vdb-entry
x_refsource_SECTRACK
http://trafficserver.apache.org/downloads
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now