HTTP: Apache Range Byte Header Memory Leak
This signature detects attempts to exploit the usage of the Range byte header against an Apache server. A successful attack can create a memory leak that could be use to perform a memory exhaustion attack. Multiple signature events could mean that a denial-of-service (DoS) attack is currently being attempted.
Extended Description
Apache is prone to a denial of service when handling large CGI byterange requests.
Affected Products
Apache_software_foundation apache
References
BugTraq: 14660
CVE: CVE-2005-2728
URL: http://issues.apache.org/bugzilla/show_bug.cgi?id=29962 http://www.gentoo.org/security/en/glsa/glsa-200508-15.xml
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Apache_software_foundation
Red_hat
Conectiva
Suse
Ibm
Trustix
Sun
Hp
Gentoo
Turbolinux
Avaya
Sgi
Ubuntu
Mandriva
5.0