CVE Vulnerabilities

CVE-2002-0843

Published: Oct 11, 2002 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Buffer overflows in the ApacheBench benchmark support program (ab.c) in Apache before 1.3.27, and Apache 2.x before 2.0.43, allow a malicious web server to cause a denial of service and possibly execute arbitrary code via a long response.

Affected Software

Name Vendor Start Version End Version
Http_server Apache 1.3 (including) 1.3 (including)
Http_server Apache 1.3.1 (including) 1.3.1 (including)
Http_server Apache 1.3.3 (including) 1.3.3 (including)
Http_server Apache 1.3.4 (including) 1.3.4 (including)
Http_server Apache 1.3.6 (including) 1.3.6 (including)
Http_server Apache 1.3.9 (including) 1.3.9 (including)
Http_server Apache 1.3.11 (including) 1.3.11 (including)
Http_server Apache 1.3.12 (including) 1.3.12 (including)
Http_server Apache 1.3.14 (including) 1.3.14 (including)
Http_server Apache 1.3.17 (including) 1.3.17 (including)
Http_server Apache 1.3.18 (including) 1.3.18 (including)
Http_server Apache 1.3.19 (including) 1.3.19 (including)
Http_server Apache 1.3.20 (including) 1.3.20 (including)
Http_server Apache 1.3.22 (including) 1.3.22 (including)
Http_server Apache 1.3.23 (including) 1.3.23 (including)
Http_server Apache 1.3.24 (including) 1.3.24 (including)
Http_server Apache 1.3.25 (including) 1.3.25 (including)
Http_server Apache 1.3.26 (including) 1.3.26 (including)
Application_server Oracle 1.0.2 (including) 1.0.2 (including)
Application_server Oracle 1.0.2.1s (including) 1.0.2.1s (including)
Application_server Oracle 1.0.2.2 (including) 1.0.2.2 (including)
Application_server Oracle 9.0.2 (including) 9.0.2 (including)
Application_server Oracle 9.0.2-r2 (including) 9.0.2-r2 (including)
Application_server Oracle 9.0.2.1 (including) 9.0.2.1 (including)
Database_server Oracle 8.1.7 (including) 8.1.7 (including)
Database_server Oracle 9.2.2 (including) 9.2.2 (including)
Oracle8i Oracle 8.1.7 (including) 8.1.7 (including)
Oracle8i Oracle 8.1.7.0.0_enterprise (including) 8.1.7.0.0_enterprise (including)
Oracle8i Oracle 8.1.7.1 (including) 8.1.7.1 (including)
Oracle8i Oracle 8.1.7.1.0_enterprise (including) 8.1.7.1.0_enterprise (including)

References