Security Advisory

CVE-2011-3192

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-08-29 15:00:00
Last updated 2024-08-06 23:29:55
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.