HTTP: Apache mod_rewrite Buffer Overflow
This signature detects attempts to exploit a known vulnerability in the Apache mod_rewrite module. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the Apache daemon.
Extended Description
Apache mod_rewrite is prone to an off-by-one buffer-overflow condition. The vulnerability arising in the mod_rewrite module's ldap scheme handling allows for potential memory corruption when an attacker exploits certain rewrite rules. An attacker may exploit this issue to trigger a denial-of-service condition. Reportedly, arbitrary code execution may be possible as well.
Affected Products
Hp system_management_homepage
References
BugTraq: 19204
CVE: CVE-2006-3747
URL: http://www.securityfocus.com/archive/1/443870 http://www.kb.cert.org/vuls/id/395412 http://www.apache.org/dist/httpd/Announcement2.0.html http://archives.neohapsis.com/archives/bugtraq/2006-07/0514.html http://www.apache.org/dist/httpd/announcement2.2.html
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Apache_software_foundation
Suse
Apple
Trustix
Sun
Openpkg
Hp
Gentoo
Turbolinux
Slackware
Ubuntu
Mandriva
Openbsd
Debian
Rpath
Ibm
7.6