Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-2765
Description:The ModSecurity module before 2.7.4 for the Apache HTTP Server allows remote attackers to cause a denial of service (NULL pointer dereference, process crash, and disk consumption) via a POST request with a large body and a crafted Content-Type header.
Test IDs: 1.3.6.1.4.1.25623.1.1.10.2013.0179   1.3.6.1.4.1.25623.1.1.4.2013.1406.1   1.3.6.1.4.1.25623.1.0.865694  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-2765
Bugtraq: 20130528 [SECURITY][CVE-2013-2765][ModSecurity] Remote Null Pointer Dereference (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2013-05/0125.html
http://www.shookalabs.com/
https://github.com/SpiderLabs/ModSecurity/commit/0840b13612a0b7ef1ce7441cf811dcfc6b463fba
https://github.com/shookalabs/exploits/blob/master/modsecurity_cve_2013_2765_check.py
http://sourceforge.net/mailarchive/message.php?msg_id=30900019
SuSE Security Announcement: openSUSE-SU-2013:1331 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-08/msg00020.html
SuSE Security Announcement: openSUSE-SU-2013:1336 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-08/msg00025.html
SuSE Security Announcement: openSUSE-SU-2013:1342 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-08/msg00031.html




© 1998-2025 E-Soft Inc. All rights reserved.