Description
Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted URLs that are not properly handled using certain rewrite rules.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1131-1 | New apache package fix buffer overflow |
Debian DSA |
DSA-1132-1 | New apache2 packages fix buffer overflow |
Ubuntu USN |
USN-328-1 | Apache vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T18:39:54.031Z
Reserved: 2006-07-20T00:00:00.000Z
Link: CVE-2006-3747
No data.
Status : Modified
Published: 2006-07-28T18:02:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2006-3747
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
Ubuntu USN