Oval Definition:oval:org.mitre.oval:def:7923
Revision Date:2013-07-22Version:5
Title:Apache 1.3 mod_proxy HTTP Chunked Encoding Integer Overflow Vulnerability
Description:Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a large chunk size that triggers a heap-based buffer overflow.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-0010
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Apache
Definition Synopsis
  • Windows 64 bit platform
  • a version of Windows for the ia64 architecture is installed
  • OR a version of Windows for the x64 architecture is installed
  • AND Apache HTTP Server 1.3.x is installed on the system
  • AND The version of Apache HTTP Server is less than 1.3.42
  • AND ApacheCore.dll exists
  • BACK