漏洞类别:Web server漏洞等级:
漏洞信息
IBM HTTP Server contains AfpaCache directive, which turns the Fast Response Cache Accelerator function on or off.
IBM HTTP Server is subject to a denial of service. Requesting multiple malformed HTTP GET requests will cause the consumption of kernel memory, which will eventually lead to a denial of service. This condition is due to the AfpaCache module not releasing allocated memory after "Bad Request" HTTP requests.
It should be noted that WebSphere was built based on IBM HTTP Server and is also subject to this vulnerability.
漏洞危害
As a result, a restart of the service is required in order to regain normal functionality.
解决方案
Workaround:
Comment out the three lines beginning with "Apfa" in the httpd.conf file, which is located in the conf directory in the Web server folder.
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0day
文章评论