The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 up to and including 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote malicious users to cause a denial of service (worker consumption) via an expensive request.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache http server 2.2.13 |
||
apache http server 2.2.17 |
||
apache http server 2.2.16 |
||
apache http server 2.2.21 |
||
apache http server 2.2.14 |
||
apache http server 2.2.19 |
||
apache http server 2.2.18 |
||
apache http server 2.2.12 |
||
apache http server 2.2.15 |
||
apache http server 2.2.20 |