CVE-2014-0226
Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 85.7%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credential information or execute arbitrary code, via a crafted request that triggers improper scoreboard handling within the status_handler function in modules/generators/mod_status.c and the lua_ap_scoreboard_worker function in modules/lua/lua_request.c.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 85.74% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-362
- Affected
- apache/http server · debian/debian linux · redhat/jboss enterprise application platform · oracle/enterprise manager ops center · oracle/http server · oracle/secure global desktop
- Source
- secalert@redhat.com
References
- http://advisories.mageia.org/MGASA-2014-0304.htmlThird Party Advisory
- http://advisories.mageia.org/MGASA-2014-0305.htmlThird Party Advisory
- http://httpd.apache.org/security/vulnerabilities_24.htmlPatch, Vendor Advisory
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00001.htmlBroken Link, Mailing List
- http://marc.info/?l=bugtraq&m=143403519711434&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=143748090628601&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=144050155601375&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=144493176821532&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1019.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1020.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2014-1021.htmlBroken Link
- http://seclists.org/fulldisclosure/2014/Jul/114Exploit, Mailing List, Third Party Advisory
- http://secunia.com/advisories/60536Not Applicable
- http://security.gentoo.org/glsa/glsa-201408-12.xmlThird Party Advisory
- http://svn.apache.org/repos/asf/httpd/httpd/branches/2.2.x/CHANGESVendor Advisory
- http://svn.apache.org/viewvc/httpd/httpd/trunk/modules/generators/mod_status.cVendor Advisory
- http://svn.apache.org/viewvc/httpd/httpd/trunk/modules/generators/mod_status.c?r1=1450998&r2=1610491&diff_format=hPatch, Vendor Advisory
- http://svn.apache.org/viewvc/httpd/httpd/trunk/modules/lua/lua_request.cVendor Advisory
- http://svn.apache.org/viewvc/httpd/httpd/trunk/modules/lua/lua_request.c?r1=1588989&r2=1610491&diff_format=hPatch, Vendor Advisory
- http://www.debian.org/security/2014/dsa-2989Third Party Advisory
- http://www.exploit-db.com/exploits/34133Third Party Advisory, VDB Entry
- http://www.mandriva.com/security/advisories?name=MDVSA-2014:142Broken Link
- http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.htmlThird Party Advisory
- http://www.osvdb.org/109216Broken Link
- http://www.securityfocus.com/bid/68678Third Party Advisory, VDB Entry
- http://zerodayinitiative.com/advisories/ZDI-14-236/Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=1120603Issue Tracking, Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04832246Third Party Advisory
- https://lists.apache.org/thread.html/56c2e7cc9deb1c12a843d0dc251ea7fd3e7e80293cde02fcd65286ba%40%3Ccvs.httpd.apache.org%3E
- https://lists.apache.org/thread.html/84a3714f0878781f6ed84473d1a503d2cc382277e100450209231830%40%3Ccvs.httpd.apache.org%3E
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.