Total vulnerabilities in the database
The multipart processor in ModSecurity before 2.5.9 allows remote attackers to cause a denial of service (crash) via a multipart form datapost request with a missing part header name, which triggers a NULL pointer dereference.
Software | From | Fixed in |
---|---|---|
trustwave / modsecurity | - | 2.5.9 |
fedoraproject / fedora | 10 | 10.x |
fedoraproject / fedora | 9 | 9.x |