← Back

CVE-2004-0493

nvd nist
Published: Aug 6, 2004Modified: Apr 16, 2026

JSON object

Loading...
6.4
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:P
Exploitability: 10.0 / Impact: 4.9
Source: NVD

Description

The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and possibly an integer signedness error leading to a heap-based buffer overflow on 64 bit systems, via long header lines with large numbers of space or tab characters.

Affected (16)

Show all products
4 products
Converged Communications Server
S8300
S8500
S8700
1 product
Linux
1 product
Secure Linux
1 product
Http Server
1 product
Http Server
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.0
Version 1.4
Trustix
Version 1.5
Version 2.0
Version 2.1
Configuration B
11 vulnerable
Vulnerable SoftwareAffected Versions
Apache
Version 2.0.47
Version 2.0.48
Version 2.0.49
Version r2.0.0
Version r2.0.0
Version r2.0.0
Ibm
Version 2.0.42.1
Version 2.0.42.2
Version 2.0.42
Version 2.0.47.1
Version 2.0.47

References (48)

Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.