mirror of
https://github.com/0xMarcio/cve.git
synced 2026-03-30 00:40:29 +02:00
928 B
928 B
CVE-2014-3583
Description
The handle_headers function in mod_proxy_fcgi.c in the mod_proxy_fcgi module in the Apache HTTP Server 2.4.10 allows remote FastCGI servers to cause a denial of service (buffer over-read and daemon crash) via long response headers.
POC
Reference
- http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html
- https://hackerone.com/reports/36264