Oval Definition:oval:org.mitre.oval:def:1346
Revision Date:2006-01-25Version:17
Title:Apache mod_ssl CRL off-by-one DoS
Description:Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-1268
Platform(s):HP-UX 11
Product(s):Apache
Definition Synopsis
  • 700 Series or 800 Series OS Release 11.00, 11.11, or 11.23
  • 700 Series or 800 Series OS Release 11.11
  • 700 Series OS Release 11.11
  • 700-series HP
  • AND HP Release B.11.11
  • OR 800 Series OS Release 11.11
  • 800-series HP
  • AND HP Release B.11.11
  • OR 700 Series or 800 Series OS Release 11.00
  • 700 Series OS Release 11.00
  • 700-series HP
  • AND HP Release B.11.00
  • OR 800 Series OS Release 11.00
  • 800-series HP
  • AND HP Release B.11.00
  • OR 700 Series or 800 Series OS Release 11.23
  • 700 Series OS Release 11.23
  • 700-series HP
  • AND HP Release B.11.23
  • OR 800 Series OS Release 11.23
  • 800-series HP
  • AND HP Release B.11.23
  • AND hpuxwsAPACHE is installed
  • AND NOT hpuxwsAPACHE has a version greater than or equal (A|B).2.0.55.0
  • BACK