CVE-2011-3192
29.08.2011, 15:55
The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.Enginsight
Vendor | Product | Version |
---|---|---|
apache | http_server | 2.0.35 ≤ 𝑥 < 2.0.65 |
apache | http_server | 2.2.0 ≤ 𝑥 < 2.2.20 |
opensuse | opensuse | 11.3 |
opensuse | opensuse | 11.4 |
canonical | ubuntu_linux | 8.04 |
canonical | ubuntu_linux | 10.04 |
canonical | ubuntu_linux | 10.10 |
canonical | ubuntu_linux | 11.04 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References