Apache httpd 输入验证错误漏洞

admin 2024-01-13 17:46:59 YS 来源:ZONE.CI 全球网 0 阅读模式
> Apache httpd 输入验证错误漏洞

Apache httpd 输入验证错误漏洞

CNNVD-ID编号 CNNVD-201710-1011 CVE编号 CVE-2017-15715
发布时间 2017-10-23 更新时间 2021-02-04
漏洞类型 输入验证错误 漏洞来源 N/A
危险等级 高危 威胁类型 远程
厂商 debian

漏洞介绍

Apache httpd是美国阿帕奇(Apache)软件基金会的一款专为现代操作系统开发和维护的开源HTTP服务器。

Apache httpd 2.4.0版本至2.4.29版本中存在安全漏洞。攻击者可通过向目标系统发送特制的文件利用该漏洞绕过安全限制。

漏洞补丁

目前厂商已发布升级了Apache httpd 输入验证错误漏洞的补丁,Apache httpd 输入验证错误漏洞的补丁获取链接:

参考网址

来源:BID

链接:https://www.securityfocus.com/bid/103525

来源:CONFIRM

链接:https://security.netapp.com/advisory/ntap-20180601-0004/

来源:DEBIAN

链接:https://www.debian.org/security/2018/dsa-4164

来源:BID

链接:http://www.securityfocus.com/bid/103525

来源:httpd.apache.org

链接:httpd.apache.org/security/vulnerabilities_24.html

来源:CONFIRM

链接:https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03909en_us

来源:REDHAT

链接:https://access.redhat.com/errata/RHSA-2019:0367

来源:REDHAT

链接:https://access.redhat.com/errata/RHSA-2019:0366

来源:UBUNTU

链接:https://usn.ubuntu.com/3627-1/

来源:SECTRACK

链接:http://www.securitytracker.com/id/1040570

来源:UBUNTU

链接:https://usn.ubuntu.com/3627-2/

来源:MLIST

链接:http://www.openwall.com/lists/oss-security/2018/03/24/6

来源:REDHAT

链接:https://access.redhat.com/errata/RHSA-2018:3558

来源:httpd.apache.org%3E

链接:httpd.apache.org%3E

来源:MLIST

链接:https://lists.apache.org/thread.html/56c2e7cc9deb1c12a843d0dc251ea7fd3e7e80293cde02fcd65286ba@%3Ccvs.

来源:www.ibm.com

链接:http://www.ibm.com/support/docview.wss?uid=swg22014121

来源:access.redhat.com

链接:https://access.redhat.com/errata/RHSA-2019:0367

来源:access.redhat.com

链接:https://access.redhat.com/errata/RHSA-2019:0366

来源:packetstormsecurity.com

链接:https://packetstormsecurity.com/files/151742/Red-Hat-Security-Advisory-2019-0367-01.html

来源:www.auscert.org.au

链接:https://www.auscert.org.au/bulletins/75962

来源:packetstormsecurity.com

链接:https://packetstormsecurity.com/files/151814/Red-Hat-Security-Advisory-2019-0366-01.html

来源:www.auscert.org.au

链接:https://www.auscert.org.au/bulletins/75770

来源:www.ibm.com

链接:http://www.ibm.com/support/docview.wss?uid=ibm10880665

来源:www.auscert.org.au

链接:https://www.auscert.org.au/bulletins/79734

来源:httpd-affects-ibm-integrated-analytics-system-5

链接:httpd-affects-ibm-integrated-analytics-system-5/

来源:www.ibm.com

链接:https://www.ibm.com/blogs/psirt/security-bulletin-vulnerability-in-

来源:www.ibm.com

链接:https://www.ibm.com/blogs/psirt/security-bulletin-ibm-qradar-siem-is-vulnerable-to-using-components-with-known-vulnerabilities-5/

来源:www.auscert.org.au

链接:https://www.auscert.org.au/bulletins/ESB-2020.3373/

来源:www.auscert.org.au

链接:https://www.auscert.org.au/bulletins/ESB-2018.0660.10/

来源:packetstormsecurity.com

链接:https://packetstormsecurity.com/files/159371/Red-Hat-Security-Advisory-2020-3958-01.html

受影响实体

Debian Debian_linux:9.0 Debian Debian_linux:8.0

信息来源

http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-201710-1011

weinxin
版权声明
本站原创文章转载请注明文章出处及链接,谢谢合作!
评论:0   参与:  0