Candidate: CVE-2012-0256 PublicDate: 2012-03-26 14:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0256 Description: Apache Traffic Server 2.0.x and 3.0.x before 3.0.4 and 3.1.x before 3.1.3 does not properly allocate heap memory, which allows remote attackers to cause a denial of service (daemon crash) via a long HTTP Host header. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_trafficserver: upstream_trafficserver: released (3.0.4-1) hardy_trafficserver: DNE lucid_trafficserver: DNE maverick_trafficserver: DNE natty_trafficserver: DNE oneiric_trafficserver: ignored (reached end-of-life) precise_trafficserver: ignored (reached end-of-life) precise/esm_trafficserver: DNE (precise was needed) quantal_trafficserver: not-affected (3.0.4-1.1) raring_trafficserver: not-affected (3.0.4-1.1) saucy_trafficserver: not-affected (3.0.4-1.1) trusty_trafficserver: not-affected (3.0.4-1.1) trusty/esm_trafficserver: DNE (trusty was not-affected [3.0.4-1.1]) utopic_trafficserver: not-affected (3.0.4-1.1) vivid_trafficserver: not-affected (3.0.4-1.1) vivid/stable-phone-overlay_trafficserver: DNE vivid/ubuntu-core_trafficserver: DNE wily_trafficserver: not-affected (3.0.4-1.1) xenial_trafficserver: not-affected (3.0.4-1.1) yakkety_trafficserver: not-affected (3.0.4-1.1) zesty_trafficserver: not-affected (3.0.4-1.1) devel_trafficserver: not-affected (3.0.4-1.1)