First published: Sat Feb 18 2006(Updated: )
Unspecified vulnerability in (1) apreq_parse_headers and (2) apreq_parse_urlencoded functions in Apache2::Request (Libapreq2) before 2.07 allows remote attackers to cause a denial of service (CPU consumption) via unknown attack vectors that result in quadratic computational complexity.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apache libapreq2 | <2.07 | |
Debian Linux | =3.1 | |
Debian Linux | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0042 has been classified as a denial of service vulnerability that can lead to significant CPU consumption.
To mitigate CVE-2006-0042, update Apache libapreq2 to version 2.07 or later.
CVE-2006-0042 affects Apache libapreq2 versions earlier than 2.07 and certain Debian Linux versions.
Yes, CVE-2006-0042 can be exploited by remote attackers through unknown attack vectors.
The potential impacts of CVE-2006-0042 include denial of service due to increased CPU consumption leading to service disruption.