Apache2 MOD_CGI STDERR Denial Of Service Vulnerability
BID:8725
Info
Apache2 MOD_CGI STDERR Denial Of Service Vulnerability
| Bugtraq ID: | 8725 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 29 2003 12:00AM |
| Updated: | Sep 29 2003 12:00AM |
| Credit: | This issue was announced in an Apache Bug Database bug entry. |
| Vulnerable: |
Apache Apache 2.0.47 Apache Apache 2.0.46 Apache Apache 2.0.45 Apache Apache 2.0.44 Apache Apache 2.0.43 Apache Apache 2.0.42 Apache Apache 2.0.41 Apache Apache 2.0.40 Apache Apache 2.0.39 Apache Apache 2.0.38 Apache Apache 2.0.37 Apache Apache 2.0.36 Apache Apache 2.0.35 Apache Apache 2.0.32 Apache Apache 2.0.28 Apache Apache 2.0 a9 Apache Apache 2.0 |
| Not Vulnerable: | |
Discussion
Apache2 MOD_CGI STDERR Denial Of Service Vulnerability
Apache2 has been reported prone to a denial-of-service vulnerability. The issue has been reported to present itself when a CGI script outputs excessive data to STDERR. If this condition occurs the execution of the script will reportedly pause indefinitely due to a locked write() call in mod_cgi. Because Apache2 is waiting for further input from the malicious CGI application, the httpd process may hang. When the maximum connection limit is reached, Apache will no longer service requests, effectively denying service to legitimate users.
Apache2 has been reported prone to a denial-of-service vulnerability. The issue has been reported to present itself when a CGI script outputs excessive data to STDERR. If this condition occurs the execution of the script will reportedly pause indefinitely due to a locked write() call in mod_cgi. Because Apache2 is waiting for further input from the malicious CGI application, the httpd process may hang. When the maximum connection limit is reached, Apache will no longer service requests, effectively denying service to legitimate users.
Exploit / POC
Apache2 MOD_CGI STDERR Denial Of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Apache2 MOD_CGI STDERR Denial Of Service Vulnerability
Solution:
The vendor has announced that this issue has been addressed in the latest CVS release.
Mandrake has released an updated security advisory (MDKSA-2003:096-1) to address this issue. Previous fixes did not sufficiently correct the problem, and caused issues with other applications on affected hosts. Affected users are advised to apply fixes as soon as possible. Further information regarding obtaining and applying fixes is available in the referenced advisory.
HP has released advisory HPSBUX0310-285 to address this issue.
Apache Apache 2.0.44
Apache Apache 2.0.47
Solution:
The vendor has announced that this issue has been addressed in the latest CVS release.
Mandrake has released an updated security advisory (MDKSA-2003:096-1) to address this issue. Previous fixes did not sufficiently correct the problem, and caused issues with other applications on affected hosts. Affected users are advised to apply fixes as soon as possible. Further information regarding obtaining and applying fixes is available in the referenced advisory.
HP has released advisory HPSBUX0310-285 to address this issue.
Apache Apache 2.0.44
-
Mandrake apache2-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-common-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-common-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-devel-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-devel-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-manual-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-manual-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_dav-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_dav-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_ldap-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_ldap-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_ssl-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_ssl-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-modules-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-modules-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-source-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-source-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libapr0-2.0.47-1.4.91mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libapr0-2.0.47-1.4.91mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php
Apache Apache 2.0.47
-
Mandrake apache2-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-common-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-devel-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-manual-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_cache-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_dav-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_deflate-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_disk_cache-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_file_cache-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_ldap-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_mem_cache-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_proxy-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-mod_ssl-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-modules-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake apache2-source-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libapr0-2.0.47-6.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php
References
Apache2 MOD_CGI STDERR Denial Of Service Vulnerability
References:
References:
- Apache Software Foundation Homepage (Apache Software Foundation)
- SECURITY: 4097+ bytes of stderr from cgi script causes script to hang (Apache Software Foundation)