Apache mod_ssl/Apache-SSL Buffer Overflow Vulnerability
|
Bugtraq ID:
|
4189
|
|
Class:
|
Boundary Condition Error
|
|
CVE:
|
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Feb 27 2002 12:00AM
|
|
Updated:
|
Feb 27 2002 12:00AM
|
|
Credit:
|
Credited to Ed Moyle <emoyle@scsnet.csc.com>, Graeme Tait, Apache guru, and Ralf Engelschall.
|
|
Vulnerable:
|
Oracle Oracle9i Standard Edition 9.2
Oracle Oracle9i Standard Edition 9.0.1
Oracle Oracle9i Standard Edition 8.1.7
Oracle Oracle9i Personal Edition 9.2
Oracle Oracle9i Personal Edition 9.0.1
Oracle Oracle9i Personal Edition 8.1.7
Oracle Oracle9i Enterprise Edition 9.2 .0
Oracle Oracle9i Enterprise Edition 9.0.1
Oracle Oracle9i Enterprise Edition 8.1.7
Oracle Oracle9i Application Server 9.0.3
Oracle Oracle9i Application Server 9.0.2
Oracle Oracle9i Application Server 1.0.2 .2
Oracle Oracle9i Application Server 1.0.2 .1s
Oracle Oracle HTTP Server 9.2 .0
+
Apache Software Foundation Apache 1.3.22
Oracle Oracle HTTP Server 9.0.1
Oracle Oracle HTTP Server 8.1.7
+
Apache Software Foundation Apache 1.3.12
+
Oracle Oracle8 8.1.7
+
Oracle Oracle8i Enterprise Edition 8.1.7 .0.0
+
Oracle Oracle8i Standard Edition 8.1.7
mod_ssl mod_ssl 2.8.6
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
+
Compaq Compaq Secure Web Server for OpenVMS 1.2
+
Compaq Compaq Secure Web Server for OpenVMS 1.1 -1
+
Compaq Compaq Secure Web Server for OpenVMS 1.0 -1
+
Compaq Compaq Secure Web Server for Tru64 5.5.2
mod_ssl mod_ssl 2.8.5 -1
+
Apache Software Foundation Apache 1.3.22
mod_ssl mod_ssl 2.8.5
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
+
Caldera OpenLinux Server 3.1.1
+
Caldera OpenLinux Server 3.1
+
Caldera OpenLinux Workstation 3.1.1
+
Caldera OpenLinux Workstation 3.1
+
Conectiva Linux 8.0
+
Conectiva Linux 7.0
+
Conectiva Linux 6.0
+
Conectiva Linux 5.1
+
Conectiva Linux 5.0
+
Conectiva Linux graficas
+
Conectiva Linux ecommerce
+
MandrakeSoft Corporate Server 1.0.1
+
Mandriva Linux Mandrake 8.1 ia64
+
Mandriva Linux Mandrake 8.1
+
Mandriva Linux Mandrake 8.0 ppc
+
Mandriva Linux Mandrake 8.0
+
Mandriva Linux Mandrake 7.2
+
Mandriva Linux Mandrake 7.1
+
RedHat Linux 7.2 ia64
+
RedHat Linux 7.2 i386
+
RedHat Linux 7.2
+
RedHat Linux 7.1 ia64
+
RedHat Linux 7.1 i386
+
RedHat Linux 7.1 alpha
+
RedHat Linux 7.1
+
RedHat Linux 7.0 i386
+
RedHat Linux 7.0 alpha
+
RedHat Linux 7.0
mod_ssl mod_ssl 2.8.4
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
+
MandrakeSoft Single Network Firewall 7.2
+
Slackware Linux 8.1
mod_ssl mod_ssl 2.8.3
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
mod_ssl mod_ssl 2.8.2
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
mod_ssl mod_ssl 2.8.1 -2
+
Apache Software Foundation Apache 1.3.19
mod_ssl mod_ssl 2.8.1
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
+
RedHat Secure Web Server 3.2 i386
mod_ssl mod_ssl 2.8
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.16
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.15
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14 Mac
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.13
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.7 -dev
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.6
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
+
Apache Software Foundation Apache 1.2
mod_ssl mod_ssl 2.7.1
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
+
EnGarde Secure Linux 1.0.1
mod_ssl mod_ssl 2.4.10
+
Apache Software Foundation Apache 1.3.22
+
Apache Software Foundation Apache 1.3.20
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.18
+
Apache Software Foundation Apache 1.3.17
+
Apache Software Foundation Apache 1.3.14
+
Apache Software Foundation Apache 1.3.12
+
Apache Software Foundation Apache 1.3.11
+
Apache Software Foundation Apache 1.3.9
+
Apache Software Foundation Apache 1.3.4
+
Apache Software Foundation Apache 1.3.3
+
Apache Software Foundation Apache 1.3.1
+
Apache Software Foundation Apache 1.3
+
Apache Software Foundation Apache 1.2.5
+
Apache Software Foundation Apache 1.2
Apache-SSL Apache-SSL 1.46
+
Apache Software Foundation Apache 1.3.22
Apache-SSL Apache-SSL 1.45
+
Apache Software Foundation Apache 1.3.22
Apache-SSL Apache-SSL 1.44
+
Apache Software Foundation Apache 1.3.22
Apache-SSL Apache-SSL 1.42
+
Apache Software Foundation Apache 1.3.19
+
Apache Software Foundation Apache 1.3.14
Apache-SSL Apache-SSL 1.41
+
Apache Software Foundation Apache 1.3.12
Apache-SSL Apache-SSL 1.40
+
Apache Software Foundation Apache 1.3.12
Apache-SSL Apache-SSL 1.39
+
Apache Software Foundation Apache 1.3.12
|
|
|
|
Not Vulnerable:
|
mod_ssl mod_ssl 2.8.7
+
Apache Software Foundation Apache 1.3.23
+
MandrakeSoft Multi Network Firewall 2.0
+
RedHat Linux 7.3 i386
+
RedHat Linux 7.3
mod_ssl mod_ssl 2.8.5 -2
-
Apache Software Foundation Apache 1.3.22
Apache-SSL Apache-SSL 1.47
|
|