CVE-2004-0174: High severity Apache HTTP Server vulnerability
Published Mar 25, 2004
·Updated
Apache 1.4.x before 1.3.30, and 2.0.x before 2.0.49, when using multiple listening sockets on certain platforms, allows remote attackers to cause a denial of service (blocked new connections) via a "short-lived connection on a rarely-accessed listening socket."
Affected Software
1 affected component
Apache HTTP Server<=2.0.49
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Mar 25, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0174?
CVE-2004-0174 is classified as a denial of service vulnerability.
2
How do I fix CVE-2004-0174?
To fix CVE-2004-0174, upgrade to Apache HTTP Server version 2.0.49 or later.
3
On which versions of Apache is CVE-2004-0174 found?
CVE-2004-0174 affects Apache 1.4.x before 1.3.30 and 2.0.x before 2.0.49.
4
What kind of attack does CVE-2004-0174 allow?
CVE-2004-0174 allows remote attackers to block new connections, causing a denial of service.
5
What platforms are affected by CVE-2004-0174?
CVE-2004-0174 affects certain platforms that are using multiple listening sockets.