CVE-2020-35452: mod_auth_digest possible stack overflow by one nul byte
A flaw was found in Apache httpd. The modauthdigest has a single zero byte stack overflow. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Other sources
Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in modauthdigest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow
In Apache httpd before 2.4.48 modauthdigest has a single zero byte stack overflow.
References:
https://github.com/apache/httpd/commit/3b6431eb9c9dba603385f70a2131ab4a01bf0d3b
— Red Hat
Affected Software
Remediation
Information
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2020-35452.
What is the severity of vulnerability CVE-2020-35452?
The severity of vulnerability CVE-2020-35452 is high with a severity value of 7.
Which software versions are affected by CVE-2020-35452?
Apache HTTP Server versions 2.4.0 to 2.4.46 are affected by CVE-2020-35452.
Is there a fix available for CVE-2020-35452?
Yes, the fix for CVE-2020-35452 is available in Apache HTTP Server version 2.4.47.
Are there any reports of this vulnerability being exploited?
There are no reports of this vulnerability being exploited.