LWN.net Logo

httpd: mod_ssl input filter denial of service vulnerability

Package(s):httpd CVE #(s):CAN-2004-0748
Created:September 2, 2004 Updated:September 23, 2004
Description: Apache httpd has a denial of service vulnerability in mod_ssl in which an attacker can force an SSL connection to abort, resulting in the Apache child process entering an infinite loop. This affects httpd versions up to and including 2.0.50.
Alerts:
Fedora FEDORA-2004-313 2004-09-23
Conectiva CLA-2004:868 2004-09-23
SuSE SUSE-SA:2004:030 2004-09-06
Red Hat RHSA-2004:349-01 2004-09-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds