Back to search
CVE-2014-3523
Published: Jul 20, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
Memory leak in the winnt_accept function in server/mpm/winnt/child.c in the WinNT MPM in the Apache HTTP Server 2.4.x before 2.4.10 on Windows, when the default AcceptFilter is enabled, allows remote attackers to cause a denial of service (memory consumption) via crafted requests.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
HPSBMU03409
vendor-advisory
x_refsource_HP
http://httpd.apache.org/security/vulnerabilities_24.html
x_refsource_CONFIRM
HPSBMU03380
vendor-advisory
x_refsource_HP
http://svn.apache.org/viewvc/httpd/httpd/trunk/server/mpm/winnt/child.c
x_refsource_CONFIRM
RHSA-2016:2957
vendor-advisory
x_refsource_REDHAT
68747
vdb-entry
x_refsource_BID
[httpd-cvs] 20210330 svn commit: r1073139 [1/13] - in /websites/staging/httpd/trunk/content: ./ security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1073139 [9/13] - in /websites/staging/httpd/trunk/content: ./ security/json/
mailing-list
x_refsource_MLIST
[httpd-cvs] 20210330 svn commit: r1888194 [9/13] - /httpd/site/trunk/content/security/json/
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now