Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.
| Software | From | Fixed in |
|---|---|---|
| apache / http_server | 2.0.35 | 2.0.54.x |
| redhat / enterprise_linux_desktop | 3.0 | 3.0.x |
| redhat / enterprise_linux_desktop | 4.0 | 4.0.x |
| redhat / enterprise_linux_server | 4.0 | 4.0.x |
| redhat / enterprise_linux_workstation | 4.0 | 4.0.x |
| redhat / enterprise_linux_workstation | 3.0 | 3.0.x |
| redhat / enterprise_linux_server | 3.0 | 3.0.x |
| debian / debian_linux | 3.1 | 3.1.x |