CVE
- Id
- 5043
- CVE No.
- CVE-2002-0653
- Status
- Entry
- Description
- Off-by-one buffer overflow in the ssl_compat_directive function, as called by the rewrite_command hook for mod_ssl Apache module 2.8.9 and earlier, allows local users to execute arbitrary code as the Apache server user via .htaccess files with long entries.
- Phase
- Votes
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
26261 | 5043 | CVE-2002-0653 | VULN-DEV:20020622 Another flaw in Apache? | View |
26262 | 5043 | CVE-2002-0653 | URL:http://marc.info/?l=vuln-dev&m=102477330617604&w=2 | View |
26263 | 5043 | CVE-2002-0653 | BUGTRAQ:20020624 Apache mod_ssl off-by-one vulnerability | View |
26264 | 5043 | CVE-2002-0653 | URL:http://marc.info/?l=bugtraq&m=102513970919836&w=2 | View |
26265 | 5043 | CVE-2002-0653 | REDHAT:RHSA-2002:134 | View |
26266 | 5043 | CVE-2002-0653 | URL:http://www.redhat.com/support/errata/RHSA-2002-134.html | View |
26267 | 5043 | CVE-2002-0653 | REDHAT:RHSA-2002:135 | View |
26268 | 5043 | CVE-2002-0653 | URL:http://www.redhat.com/support/errata/RHSA-2002-135.html | View |
26269 | 5043 | CVE-2002-0653 | REDHAT:RHSA-2002:136 | View |
26270 | 5043 | CVE-2002-0653 | URL:http://www.redhat.com/support/errata/RHSA-2002-136.html | View |
26271 | 5043 | CVE-2002-0653 | REDHAT:RHSA-2002:146 | View |
26272 | 5043 | CVE-2002-0653 | URL:http://www.redhat.com/support/errata/RHSA-2002-146.html | View |
26273 | 5043 | CVE-2002-0653 | REDHAT:RHSA-2002:164 | View |
26274 | 5043 | CVE-2002-0653 | URL:http://rhn.redhat.com/errata/RHSA-2002-164.html | View |
26275 | 5043 | CVE-2002-0653 | REDHAT:RHSA-2003:106 | View |
26276 | 5043 | CVE-2002-0653 | URL:http://www.redhat.com/support/errata/RHSA-2003-106.html | View |
26277 | 5043 | CVE-2002-0653 | CALDERA:CSSA-2002-031.0 | View |
26278 | 5043 | CVE-2002-0653 | URL:ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-031.0.txt | View |
26279 | 5043 | CVE-2002-0653 | MANDRAKE:MDKSA-2002:048 | View |
26280 | 5043 | CVE-2002-0653 | URL:http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-048.php | View |
26281 | 5043 | CVE-2002-0653 | DEBIAN:DSA-135 | View |
26282 | 5043 | CVE-2002-0653 | URL:http://www.debian.org/security/2002/dsa-135 | View |
26283 | 5043 | CVE-2002-0653 | ENGARDE:ESA-20020702-017 | View |
26284 | 5043 | CVE-2002-0653 | URL:http://marc.info/?l=bugtraq&m=102563469326072&w=2 | View |
26285 | 5043 | CVE-2002-0653 | SUSE:SuSE-SA:2002:028 | View |
26286 | 5043 | CVE-2002-0653 | URL:http://www.novell.com/linux/security/advisories/2002_028_mod_ssl.html | View |
26287 | 5043 | CVE-2002-0653 | CONECTIVA:CLA-2002:504 | View |
26288 | 5043 | CVE-2002-0653 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000504 | View |
26289 | 5043 | CVE-2002-0653 | BUGTRAQ:20020628 TSL-2002-0058 - apache/mod_ssl | View |
26290 | 5043 | CVE-2002-0653 | URL:http://archives.neohapsis.com/archives/bugtraq/2002-06/0350.html | View |
26291 | 5043 | CVE-2002-0653 | HP:HPSBTL0207-052 | View |
26292 | 5043 | CVE-2002-0653 | URL:http://archives.neohapsis.com/archives/hp/2002-q3/0018.html | View |
26293 | 5043 | CVE-2002-0653 | BID:5084 | View |
26294 | 5043 | CVE-2002-0653 | URL:http://www.securityfocus.com/bid/5084 | View |
26295 | 5043 | CVE-2002-0653 | XF:apache-modssl-htaccess-bo(9415) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
63818 | JVNDB-2002-000145 | Apache HTTP Server の mod_ssl における .htaccess ファイルの処理によるバッファオーバーフローの脆弱性 | Apache HTTP Server の mod_ssl が組み込まれた状態の動作において、 .htaccess ファイルの取扱いの不備により、バッファオーバーフローが発生する脆弱性が存在します。 | CVE-2002-0653 | 5043 | 4.6 | http://jvndb.jvn.jp/ja/contents/2002/JVNDB-2002-000145.html | View |