CVE-2010-0010
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
3Exploited in Wild
-Decision
Descriptions
Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a large chunk size that triggers a heap-based buffer overflow.
Desbordamiento de enteros en la función ap_proxy_send_fb en proxy/proxy_util.c en mod_proxy en el servidor HTTP Apache anterior a v1.3.42 en plataformas de 64 bits permite a los servidores de origen remoto provocar una denegación de servicio (cuelgue del demonio) o posiblemente ejecutar código arbitrario a través de un fragmento de gran tamaño que provoca un desbordamiento de búfer basado en memoria dinámica.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2009-12-14 CVE Reserved
- 2010-02-02 CVE Published
- 2024-08-07 CVE Updated
- 2024-08-07 First Exploit
- 2024-10-23 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-189: Numeric Errors
CAPEC
References (23)
URL | Date | SRC |
---|---|---|
http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0589.html | 2024-08-07 | |
http://packetstormsecurity.org/1001-exploits/modproxy-overflow.txt | 2024-08-07 | |
http://www.securityfocus.com/bid/37966 | 2024-08-07 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00006.html | 2023-11-07 | |
http://marc.info/?l=bugtraq&m=130497311408250&w=2 | 2023-11-07 | |
http://secunia.com/advisories/38319 | 2023-11-07 | |
http://www.vupen.com/english/advisories/2010/0240 | 2023-11-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | <= 1.3.41 Search vendor "Apache" for product "Http Server" and version " <= 1.3.41" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 0.8.11 Search vendor "Apache" for product "Http Server" and version "0.8.11" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 0.8.14 Search vendor "Apache" for product "Http Server" and version "0.8.14" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.0 Search vendor "Apache" for product "Http Server" and version "1.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.0.3 Search vendor "Apache" for product "Http Server" and version "1.0.3" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.0.5 Search vendor "Apache" for product "Http Server" and version "1.0.5" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.1 Search vendor "Apache" for product "Http Server" and version "1.1" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.2 Search vendor "Apache" for product "Http Server" and version "1.2" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.2.4 Search vendor "Apache" for product "Http Server" and version "1.2.4" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.2.5 Search vendor "Apache" for product "Http Server" and version "1.2.5" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.2.6 Search vendor "Apache" for product "Http Server" and version "1.2.6" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3 Search vendor "Apache" for product "Http Server" and version "1.3" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.0 Search vendor "Apache" for product "Http Server" and version "1.3.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.1 Search vendor "Apache" for product "Http Server" and version "1.3.1" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.2 Search vendor "Apache" for product "Http Server" and version "1.3.2" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.3 Search vendor "Apache" for product "Http Server" and version "1.3.3" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.4 Search vendor "Apache" for product "Http Server" and version "1.3.4" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.10 Search vendor "Apache" for product "Http Server" and version "1.3.10" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.11 Search vendor "Apache" for product "Http Server" and version "1.3.11" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.12 Search vendor "Apache" for product "Http Server" and version "1.3.12" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.13 Search vendor "Apache" for product "Http Server" and version "1.3.13" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.14 Search vendor "Apache" for product "Http Server" and version "1.3.14" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.15 Search vendor "Apache" for product "Http Server" and version "1.3.15" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.17 Search vendor "Apache" for product "Http Server" and version "1.3.17" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.18 Search vendor "Apache" for product "Http Server" and version "1.3.18" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.19 Search vendor "Apache" for product "Http Server" and version "1.3.19" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.20 Search vendor "Apache" for product "Http Server" and version "1.3.20" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.22 Search vendor "Apache" for product "Http Server" and version "1.3.22" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.23 Search vendor "Apache" for product "Http Server" and version "1.3.23" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.24 Search vendor "Apache" for product "Http Server" and version "1.3.24" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.25 Search vendor "Apache" for product "Http Server" and version "1.3.25" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.26 Search vendor "Apache" for product "Http Server" and version "1.3.26" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.27 Search vendor "Apache" for product "Http Server" and version "1.3.27" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.28 Search vendor "Apache" for product "Http Server" and version "1.3.28" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.29 Search vendor "Apache" for product "Http Server" and version "1.3.29" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.30 Search vendor "Apache" for product "Http Server" and version "1.3.30" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.31 Search vendor "Apache" for product "Http Server" and version "1.3.31" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.32 Search vendor "Apache" for product "Http Server" and version "1.3.32" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.33 Search vendor "Apache" for product "Http Server" and version "1.3.33" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.34 Search vendor "Apache" for product "Http Server" and version "1.3.34" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.35 Search vendor "Apache" for product "Http Server" and version "1.3.35" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.36 Search vendor "Apache" for product "Http Server" and version "1.3.36" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.37 Search vendor "Apache" for product "Http Server" and version "1.3.37" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.38 Search vendor "Apache" for product "Http Server" and version "1.3.38" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.39 Search vendor "Apache" for product "Http Server" and version "1.3.39" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Http Server Search vendor "Apache" for product "Http Server" | 1.3.40 Search vendor "Apache" for product "Http Server" and version "1.3.40" | - |
Affected
|