Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Web Servers >> mod_ssl off by one


Vulnerability Assessment Details

mod_ssl off by one

Vulnerability Assessment Summary
Checks for version of mod_ssl

Detailed Explanation for this Vulnerability Assessment

The remote host is using a version of mod_ssl which is
older than 2.8.10.

This version is vulnerable to an off by one buffer overflow
which may permit a user with write access to .htaccess files
to execute arbitrary code on the system with permissions
of the web server.

*** Note that several Linux distributions (such as RedHat)
*** patched the old version of this module. Therefore, this
*** might be a false positive. Please check with your vendor
*** to acertain if you really are vulnerable to this flaw

Solution : Upgrade to version 2.8.10 or newer
Network Security Threat Level: High

Networks Security ID: 5084

Vulnerability Assessment Copyright: This script is Copyright (C) 2002 Thomas Reinke

Cables, Connectors


A-Tech 8GB DDR3 1600 PC3-12800 Laptop SODIMM 204-Pin Memory RAM PC3L DDR3L 1x 8G picture

A-Tech 8GB DDR3 1600 PC3-12800 Laptop SODIMM 204-Pin Memory RAM PC3L DDR3L 1x 8G

$11.99



A-Tech 8GB PC3-12800 Desktop DDR3 1600 MHz Non ECC 240-Pin DIMM Memory RAM 1x 8G picture

A-Tech 8GB PC3-12800 Desktop DDR3 1600 MHz Non ECC 240-Pin DIMM Memory RAM 1x 8G

$11.99



Crucial DDR3L 16GB 1600 2x 8GB PC3-12800 Laptop SODIMM Memory RAM PC3 16G DDR3 picture

Crucial DDR3L 16GB 1600 2x 8GB PC3-12800 Laptop SODIMM Memory RAM PC3 16G DDR3

$10.95



Samsung 8GB 2Rx8 PC3-12800 DDR3 1600 MHz 1.5V Non-ECC DIMM Desktop Memory RAM 8G picture

Samsung 8GB 2Rx8 PC3-12800 DDR3 1600 MHz 1.5V Non-ECC DIMM Desktop Memory RAM 8G

$9.99



A-Tech 16GB 2x 8GB PC3-10600 Desktop DDR3 1333 MHz DIMM 240pin Memory RAM 16G 8G picture

A-Tech 16GB 2x 8GB PC3-10600 Desktop DDR3 1333 MHz DIMM 240pin Memory RAM 16G 8G

$23.98



HyperX FURY DDR3 16GB 32GB 1600MHz 1866MHZ  Desktop RAM Memory DIMM 240pins 1.5V picture

HyperX FURY DDR3 16GB 32GB 1600MHz 1866MHZ Desktop RAM Memory DIMM 240pins 1.5V

$21.95



HyperX FURY DDR3 16GB 2x 8GB 1600 MHz PC3-12800 Desktop RAM Memory DIMM 240pins  picture

HyperX FURY DDR3 16GB 2x 8GB 1600 MHz PC3-12800 Desktop RAM Memory DIMM 240pins

$21.50



16GB 4x4GB PC3-12800U Dell OptiPlex 7010 7020 9010 9020 990 980 790 Ram Memory picture

16GB 4x4GB PC3-12800U Dell OptiPlex 7010 7020 9010 9020 990 980 790 Ram Memory

$12.99



A-Tech 16GB 2 x 8GB PC3-12800 Laptop SODIMM DDR3 1600 Memory RAM PC3L 16G DDR3L picture

A-Tech 16GB 2 x 8GB PC3-12800 Laptop SODIMM DDR3 1600 Memory RAM PC3L 16G DDR3L

$23.98



A-Tech 512GB 16x 32GB 4Rx4 PC4-17000L DDR4 2133 MHz ECC LRDIMM Server Memory RAM picture

A-Tech 512GB 16x 32GB 4Rx4 PC4-17000L DDR4 2133 MHz ECC LRDIMM Server Memory RAM

$399.84



Discussions

No Discussions have been posted on this vulnerability.