CVE-2003-0542

Description

Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.523

Associated Vulnerability

VulnerabilityOS Platform
Update Apache to version 2.0.48Windows
Update Apache to version 1.3.28Windows
Vulnerabilities CVE-2003-0542 are fixed in Apache 2.0.48Windows
Update Apache to version 2.0.48 (For Linux)Linux
Update Apache to version 1.3.28 (For Linux)Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234