CVE-2002-0392

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/07/2002
Last modified:
20/11/2024

Description

Apache 1.3 through 1.3.24, and Apache 2.0 through 2.0.36, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a chunk-encoded HTTP request that causes Apache to use an incorrect size.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:* 1.2.2 (including) 1.3.24 (including)
cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:* 2.0.0 (including) 2.0.36 (including)
cpe:2.3:o:debian:debian_linux:2.2:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools