Total vulnerabilities in the database
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted URLs that are not properly handled using certain rewrite rules.
Software | From | Fixed in |
---|---|---|
apache / http_server | 2.2.0 | 2.2.3 |
apache / http_server | 1.3.28 | 1.3.37 |
apache / http_server | 2.0.46 | 2.0.59 |
canonical / ubuntu_linux | 5.04 | 5.04.x |
canonical / ubuntu_linux | 5.10 | 5.10.x |
canonical / ubuntu_linux | 6.06 | 6.06.x |
debian / debian_linux | 3.1 | 3.1.x |