FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2004-0751

This CVE name corresponds to:

Entered Topic
2004-10-21 apache2 -- SSL remote DoS

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2004-0751
Phase Assigned(20040726)

Description

The char_buffer_read function in the mod_ssl module for Apache 2.x, when using reverse proxying to an SSL server, allows remote attackers to cause a denial of service (segmentation fault).

References

Source Reference
CONFIRM http://issues.apache.org/bugzilla/show_bug.cgi?id=30134
BUGTRAQ 20040911 Remote buffer overflow in Apache mod_ssl when reverse proxying SSL
GENTOO GLSA-200409-21
MANDRAKE MDKSA-2004:096
REDHAT RHSA-2004:463
SUSE SUSE-SA:2004:030
TRUSTIX 2004-0047
OVAL oval:org.mitre.oval:def:11864
XF apache-modssl-speculative-dos(17273)