CVE-2002-0653
Off-by-one buffer overflow in the ssl_compat_directive function, as called by the rewrite_command hook for mod_ssl Apache module 2.8.9 and earlier, allows local users to execute arbitrary code as the Apache server user via .htaccess files with long…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.10%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Off-by-one buffer overflow in the ssl_compat_directive function, as called by the rewrite_command hook for mod_ssl Apache module 2.8.9 and earlier, allows local users to execute arbitrary code as the Apache server user via .htaccess files with long entries.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 1.10% probability · 64th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-193
- Affected
- modssl/mod ssl
- Source
- cve@mitre.org
References
- ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-031.0.txtBroken Link
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0350.htmlBroken Link
- http://archives.neohapsis.com/archives/hp/2002-q3/0018.htmlBroken Link
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000504Broken Link
- http://marc.info/?l=bugtraq&m=102513970919836&w=2Mailing List
- http://marc.info/?l=bugtraq&m=102563469326072&w=2Mailing List, Patch
- http://marc.info/?l=vuln-dev&m=102477330617604&w=2Mailing List
- http://rhn.redhat.com/errata/RHSA-2002-164.htmlBroken Link
- http://www.debian.org/security/2002/dsa-135Broken Link
- http://www.iss.net/security_center/static/9415.phpBroken Link
- http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-048.phpBroken Link
- http://www.novell.com/linux/security/advisories/2002_028_mod_ssl.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2002-134.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2002-135.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2002-136.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2002-146.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2003-106.htmlBroken Link
- http://www.securityfocus.com/bid/5084Broken Link, Third Party Advisory, VDB Entry
- ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-031.0.txtBroken Link
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0350.htmlBroken Link
- http://archives.neohapsis.com/archives/hp/2002-q3/0018.htmlBroken Link
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000504Broken Link
- http://marc.info/?l=bugtraq&m=102513970919836&w=2Mailing List
- http://marc.info/?l=bugtraq&m=102563469326072&w=2Mailing List, Patch
- http://marc.info/?l=vuln-dev&m=102477330617604&w=2Mailing List
- http://rhn.redhat.com/errata/RHSA-2002-164.htmlBroken Link
- http://www.debian.org/security/2002/dsa-135Broken Link
- http://www.iss.net/security_center/static/9415.phpBroken Link
- http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-048.phpBroken Link
- http://www.novell.com/linux/security/advisories/2002_028_mod_ssl.htmlBroken Link
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.