CVE-2004-0492

Publication date 6 August 2004

Last updated 24 July 2024


Ubuntu priority

Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
apache 7.04 feisty
Fixed 1.3.34-4ubuntu1
6.10 edgy
Fixed 1.3.34-4ubuntu1
6.06 LTS dapper
Fixed 1.3.34-2ubuntu0.1