CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. CVE
  3. 正文

IBM HTTP Server Apache Denial of Service Vulnerability

2016年9月27日 982点热度 0人点赞 0条评论

漏洞类别:Web server漏洞等级:

漏洞信息

IBM HTTP Server contains AfpaCache directive, which turns the Fast Response Cache Accelerator function on or off.

IBM HTTP Server is subject to a denial of service. Requesting multiple malformed HTTP GET requests will cause the consumption of kernel memory, which will eventually lead to a denial of service. This condition is due to the AfpaCache module not releasing allocated memory after "Bad Request" HTTP requests.

It should be noted that WebSphere was built based on IBM HTTP Server and is also subject to this vulnerability.

漏洞危害

As a result, a restart of the service is required in order to regain normal functionality.

解决方案

Workaround:

Comment out the three lines beginning with "Apfa" in the httpd.conf file, which is located in the conf directory in the Web server folder.

Patch:
Following are links for downloading patches to fix the vulnerabilities:

swg1PQ42463

0day

标签: 暂无
最后更新:2016年10月22日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me