>> Apache mod_proxy "ap_proxy_date_canon()" Remote Denial of Service Issue
Title : Apache mod_proxy "ap_proxy_date_canon()" Remote Denial of Service Issue VUPEN ID : VUPEN/ADV-2007-3020 CVE ID : CVE-2007-3847
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-08-31
Technical Description
A vulnerability has been identified in Apache, which could be exploited by remote attackers to cause a denial of service. This issue is caused by an error in the "ap_proxy_date_canon()" [modules/proxy/proxy_util.c] function when processing specially crafted date headers, which could be exploited by remote attackers to cause a vulnerable process to crash when a reverse or forward proxy is configured.