Apache – CVE-2004-0786


Kayran has detected that the Version of Apache HTTP Server being used might be vulnerable to Denial of Service (DoS) attacks.

The CVE-2004-0786, is also known as Apache httpd IPv6 URI parsing heap overflow.

The IPv6 URI parsing routines in the apr-util library in the version of Apache being used allow remote attackers to initiate a Denial of Service (DoS) attacks by using child processes to crash.
That, can be done via a certain URI, as demonstrated using the Codenomicon HTTP Test Tool.

This will cause a decrease in performance and also for interruptions in the availability of resources.


To fix CVE-2004-0786, upgrade the version of Apache HTTP Server being used to 2.0.51



