7.5 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): NONE
- Integrity impact (I): NONE
- Availability impact (A): HIGH
Activity log
- Created suggestion
Httpd: mod_fcgid: stack-based buffer overflow in fcgid_header_bucket_read() in modules/fcgid/fcgid_bucket.c
A flaw was found in the mod_fcgid module of httpd. A malformed FastCGI response may result in a stack-based buffer overflow in the modules/fcgid/fcgid_bucket.c file in the fcgid_header_bucket_read() function, resulting in an application crash.
References
Affected products
- ==2.3.6
Matching in nixpkgs
pkgs.fedora-backgrounds.f32
Set of default and supplemental wallpapers for Fedora
pkgs.fedora-backgrounds.f33
Set of default and supplemental wallpapers for Fedora
pkgs.fedora-backgrounds.f34
Set of default and supplemental wallpapers for Fedora
pkgs.fedora-backgrounds.f35
Set of default and supplemental wallpapers for Fedora
pkgs.fedora-backgrounds.f36
Set of default and supplemental wallpapers for Fedora
pkgs.fedora-backgrounds.f37
Set of default and supplemental wallpapers for Fedora
pkgs.fedora-backgrounds.f38
Set of default and supplemental wallpapers for Fedora
pkgs.haskellPackages.fedora-krb
Kerberos for Fedora packagers
pkgs.haskellPackages.fedora-dists
Library for Fedora distribution versions
pkgs.haskellPackages.fedora-releases
Library for Fedora release versions
pkgs.python312Packages.python-fedora
Module to interact with the infrastructure of the Fedora Project
pkgs.python313Packages.python-fedora
Module to interact with the infrastructure of the Fedora Project
pkgs.python314Packages.python-fedora
Module to interact with the infrastructure of the Fedora Project
pkgs.python312Packages.fedora-messaging
Library for sending AMQP messages with JSON schema in Fedora infrastructure
pkgs.python313Packages.fedora-messaging
Library for sending AMQP messages with JSON schema in Fedora infrastructure
pkgs.python314Packages.fedora-messaging
Library for sending AMQP messages with JSON schema in Fedora infrastructure
pkgs.haskellPackages.fedora-haskell-tools
Building and maintenance tools for Fedora Haskell
Package maintainers
-
@honnip Jung seungwoo <me@honnip.page>
-
@erictapen Kerstin Humm <kerstin@erictapen.name>