CVE-2013-6438
The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before 2.4.8 does not properly remove whitespace characters from CDATA sections, which allows remote attackers to cause a denial of service (daemon crash) via…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 26.8%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before 2.4.8 does not properly remove whitespace characters from CDATA sections, which allows remote attackers to cause a denial of service (daemon crash) via a crafted DAV WRITE request.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 26.83% probability · 98th percentile
- CISA KEV
- Not listed
- Affected
- apache/http server · oracle/http server · canonical/ubuntu linux
- Source
- secalert@redhat.com
References
- http://advisories.mageia.org/MGASA-2014-0135.htmlThird Party Advisory
- http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.htmlBroken Link
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698Third Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00001.htmlBroken Link, Mailing List
- http://marc.info/?l=bugtraq&m=141017844705317&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=141390017113542&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://seclists.org/fulldisclosure/2014/Dec/23Mailing List, Third Party Advisory
- http://secunia.com/advisories/58230Not Applicable
- http://secunia.com/advisories/59315Not Applicable
- http://secunia.com/advisories/59345Not Applicable
- http://secunia.com/advisories/60536Not Applicable
- http://security.gentoo.org/glsa/glsa-201408-12.xmlThird Party Advisory
- http://svn.apache.org/repos/asf/httpd/httpd/branches/2.2.x/CHANGESVendor Advisory
- http://svn.apache.org/viewvc/httpd/httpd/trunk/modules/dav/main/util.cVendor Advisory
- http://svn.apache.org/viewvc/httpd/httpd/trunk/modules/dav/main/util.c?r1=1528718&r2=1556428&diff_format=hPatch, Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21669554Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21676091Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21676092Third Party Advisory
- http://www.apache.org/dist/httpd/CHANGES_2.4.9Vendor Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.htmlThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.htmlThird Party Advisory
- http://www.securityfocus.com/archive/1/534161/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/66303Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2152-1Third Party Advisory
- http://www.vmware.com/security/advisories/VMSA-2014-0012.htmlThird Party Advisory
- https://blogs.oracle.com/sunsecurity/entry/multiple_input_validation_vulnerabilities_in1Third Party Advisory
- https://httpd.apache.org/security/vulnerabilities_24.htmlVendor Advisory
- https://lists.apache.org/thread.html/56c2e7cc9deb1c12a843d0dc251ea7fd3e7e80293cde02fcd65286ba%40%3Ccvs.httpd.apache.org%3E
- https://lists.apache.org/thread.html/84a3714f0878781f6ed84473d1a503d2cc382277e100450209231830%40%3Ccvs.httpd.apache.org%3E
- https://lists.apache.org/thread.html/8d63cb8e9100f28a99429b4328e4e7cebce861d5772ac9863ba2ae6f%40%3Ccvs.httpd.apache.org%3E
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.