mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-30 04:49:42 +00:00
872 B
872 B
CVE-2014-3583
Description
The handle_headers function in mod_proxy_fcgi.c in the mod_proxy_fcgi module in the Apache HTTP Server 2.4.10 allows remote FastCGI servers to cause a denial of service (buffer over-read and daemon crash) via long response headers.
POC
Reference
- http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html
- https://hackerone.com/reports/36264