CVE-2006-3747
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 96.6%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted URLs that are not properly handled using certain rewrite rules.
- CVSS 2.0
- 7.6 HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
- EPSS
- 96.58% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-189
- Affected
- apache/http server · canonical/ubuntu linux · debian/debian linux
- Source
- secalert@redhat.com
References
- http://docs.info.apple.com/article.html?artnum=307562Third Party Advisory
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01118771Third Party Advisory
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01428449Third Party Advisory
- http://kbase.redhat.com/faq/FAQ_68_8653.shtmThird Party Advisory
- http://lists.apple.com/archives/security-announce/2008//May/msg00001.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.htmlMailing List, Third Party Advisory
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048267.htmlThird Party Advisory
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048271.htmlMailing List, Third Party Advisory
- http://lwn.net/Alerts/194228/Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=130497311408250&w=2Mailing List, Third Party Advisory
- http://secunia.com/advisories/21197Broken Link
- http://secunia.com/advisories/21241Broken Link
- http://secunia.com/advisories/21245Broken Link
- http://secunia.com/advisories/21247Broken Link
- http://secunia.com/advisories/21266Broken Link
- http://secunia.com/advisories/21273Broken Link
- http://secunia.com/advisories/21284Broken Link
- http://secunia.com/advisories/21307Broken Link
- http://secunia.com/advisories/21313Broken Link
- http://secunia.com/advisories/21315Broken Link
- http://secunia.com/advisories/21346Broken Link
- http://secunia.com/advisories/21478Broken Link
- http://secunia.com/advisories/21509Broken Link
- http://secunia.com/advisories/22262Broken Link
- http://secunia.com/advisories/22368Broken Link
- http://secunia.com/advisories/22388Broken Link
- http://secunia.com/advisories/22523Broken Link
- http://secunia.com/advisories/23028Broken Link
- http://secunia.com/advisories/23260Broken Link
- http://secunia.com/advisories/26329Broken Link
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.