ID

VAR-201003-0525


TITLE

Apache mod_proxy_ajp module inbound request body remote denial of service vulnerability

Trust: 0.6

sources: CNVD: CNVD-2010-0294

DESCRIPTION

Apache mod_proxy_ajp is an extension of the mod_proxy module. Apache mod_proxy_ajp does not properly handle user requests, and remote attackers can exploit vulnerabilities for denial of service attacks. If the submitted request contains a header field indicating that there is a body inbound but does not send the corresponding body, mod_proxy_ajp will reply with HTTP_BAD_REQUEST, causing a denial of service attack. This is not caused by an HTTP_INTERNAL_SERVER_ERROR error.

Trust: 0.6

sources: CNVD: CNVD-2010-0294

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2010-0294

AFFECTED PRODUCTS

vendor:nomodel: - scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2010-0294

EXTERNAL IDS

db:CNVDid:CNVD-2010-0294

Trust: 0.6

sources: CNVD: CNVD-2010-0294

SOURCES

db:CNVDid:CNVD-2010-0294

LAST UPDATE DATE

2022-05-04T09:58:16.113000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2010-0294date:2010-03-02T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2010-0294date:2010-03-02T00:00:00