Description
Fixed in Apache httpd 2.2.3:
-
important: mod_rewrite off-by-one error CVE-2006-3747
An off-by-one flaw exists in the Rewrite module, mod_rewrite. Depending on the manner in which Apache httpd was compiled, this software defect may result in a vulnerability which, in combination with certain types of Rewrite rules in the web server configuration files, could be triggered remotely. For vulnerable builds, the nature of the vulnerability can be denial of service (crashing of web server processes) or potentially allow arbitrary code execution.
Affected Apache versions (up to 2.2.2).
Remediation
Upgrade Apache 2.x to the latest version.
References
Related Vulnerabilities
PostgreSQL Other Vulnerability (CVE-2007-3280)
WordPress Plugin MetaSlider Information Disclosure (3.3.1)
PHP Improper Handling of Exceptional Conditions Vulnerability (CVE-2014-1943)
WordPress Plugin Video Conferencing with Zoom Cross-Site Scripting (4.0.9)
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2022-31780)