PT-2010-3913 · Ibm · Ibm Http Server
Published
2010-06-18
·
Updated
2010-06-21
·
CVE-2010-2327
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
IBM HTTP Server versions 6.0 through 6.0.2.43
IBM HTTP Server versions 6.1 through 6.1.0.33
IBM HTTP Server versions 7.0 through 7.0.0.11
Description
The issue is related to the handling of large HTTP request bodies in uploading over SSL. This might allow remote attackers to cause a denial of service, potentially leading to the failure of the daemon, via an upload.
Recommendations
For IBM HTTP Server versions 6.0 through 6.0.2.43, update to version 6.0.2.43 or later.
For IBM HTTP Server versions 6.1 through 6.1.0.33, update to version 6.1.0.33 or later.
For IBM HTTP Server versions 7.0 through 7.0.0.11, update to version 7.0.0.11 or later.
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Http Server