Apache – CVE-2001-1342

Description

Kayran has detected that the Version of Apache HTTP Server being used is vulnerable to Denial of Service (DoS) attack through Win32 and OS2 ports. Also known as CVE-2001-1342.

By abusing the Win32 and OS2 ports of your Apache’s version, remote attackers could cause a Denial of Service through GPF.
By crafting an HTTP request for a URI that contains a large number of ‘ / ‘ (slash), or, any other characters.
That may cause certain functions to dereference a null pointer.

It may lead to a decrease in performance and interruptions in the availability of resources.

NULL Pointer Dereference (CWE-476) occurs when the application dereferences a pointer that it expects to be valid, but is actually NULL.

Recommendation

To fix CVE-2001-1342, upgrade the version of Apache HTTP Server being used to 1.3.20.

References

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-1342

< Return to all Vulnerabilities

APT vs. ATP

In this article we will talk about APT vs. ATP. In other words, Advanced Persistent Threat and Advanced Threat Protection and the context between these

Read More »

Using VPN

What is a VPN? Why should someone be using VPN? Which Problems does is solve? and what is the advantages and disadvantages of it? Let’s

Read More »

Servers 101

Let’s have a “quick” Servers 101 Course. Courtesy of Kayran! If you’ve been on the internet for over an hour, you probably already heard of

Read More »