CVE-2014-3583
Publication date 15 December 2014
Last updated 24 July 2024
Ubuntu priority
The handle_headers function in mod_proxy_fcgi.c in the mod_proxy_fcgi module in the Apache HTTP Server 2.4.10 allows remote FastCGI servers to cause a denial of service (buffer over-read and daemon crash) via long response headers.
Status
Package | Ubuntu Release | Status |
---|---|---|
apache2 | ||
14.04 LTS trusty |
Not affected
|
|
Notes
mdeslaur
introduced by http://svn.apache.org/viewvc?view=revision&revision=1594537 only affects 2.4.10
Patch details
Package | Patch details |
---|---|
apache2 |
|
References
Related Ubuntu Security Notices (USN)
- USN-2523-1
- Apache HTTP Server vulnerabilities
- 10 March 2015