CVE-2006-3747
high · 7.6Off-by-one error in the ldap scheme handling in the Rewrite module (mod_rewrite) in Apache 1.3 from 1.3.28, 2.0.46 and other versions before 2.0.59, and 2.2, when RewriteEngine is enabled, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted URLs that are not properly handled using certain rewrite rules.
7.6
CVSS
96.6%
EPSS (exploit prob.)
100th
EPSS percentile
2006-07-28
Published
AV:N/AC:H/Au:N/C:C/I:C/A:C
Weaknesses
CWE-189
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| apache | http_server | >= 1.3.28, < 1.3.37 |
| apache | http_server | >= 2.0.46, < 2.0.59 |
| apache | http_server | >= 2.2.0, < 2.2.3 |
| canonical | ubuntu_linux | 5.04 |
| canonical | ubuntu_linux | 5.10 |
| canonical | ubuntu_linux | 6.06 |
| debian | debian_linux | 3.1 |
Check a specific version with /api/v1/cve/match.
References
- http://docs.info.apple.com/article.html?artnum=307562
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01118771
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01428449
- http://kbase.redhat.com/faq/FAQ_68_8653.shtm
- http://lists.apple.com/archives/security-announce/2008//May/msg00001.html
- http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048267.html
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048271.html
- http://lwn.net/Alerts/194228/
- http://marc.info/?l=bugtraq&m=130497311408250&w=2
- http://secunia.com/advisories/21197
- http://secunia.com/advisories/21241
- http://secunia.com/advisories/21245
- http://secunia.com/advisories/21247
- http://secunia.com/advisories/21266
- http://secunia.com/advisories/21273
- http://secunia.com/advisories/21284
- http://secunia.com/advisories/21307
- http://secunia.com/advisories/21313
- http://secunia.com/advisories/21315
- http://secunia.com/advisories/21346
- http://secunia.com/advisories/21478
- http://secunia.com/advisories/21509
- http://secunia.com/advisories/22262
- http://secunia.com/advisories/22368
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2006-3747