mod_access_referer 1.0.2 allows remote malicious users to cause a denial of service (crash) via a malformed Referer header that is missing a hostname, as parsed by the ap_parse_uri_components function in Apache, which triggers a null dereference.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mod access referer mod access referer 1.0.2 |