CVE-2011-3192
The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of...
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- August 19, 2011
- Published Date
- August 29, 2011
- Last Updated
- August 06, 2024
- Vendor
- Apache
- Product
- HTTP Server
- Description
- The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as exploited in the wild in August 2011, a different vulnerability than CVE-2007-0086.
- Tags
- Proof of Concept Available
- Yes (added 2018-08-02 11:30:35 UTC) Source
CVSS Scores
CVSS v2.0
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C
Exploit Status
References
Known Exploited Vulnerability Information
| Source | Added Date |
|---|---|
| CVE | 2011-08-29 15:00:00 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
futurezayka/CVE-2011-3192
Type: github • Created: 2023-09-16 14:01:39 UTC • Stars: 0
limkokholefork/CVE-2011-3192
Type: github • Created: 2018-08-02 11:30:35 UTC • Stars: 4
Timeline
-
CVE ID Reserved
-
CVE Published to Public
-
Added to KEVIntel
-
Proof of Concept Exploit Available