Description
In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_mime can read one byte past the end of a buffer when sending a malicious Content-Type response header.
Remediation
References
Related Vulnerabilities
Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419)
MediaWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-40603)
PostgreSQL Uncontrolled Search Path Element Vulnerability (CVE-2020-14349)
Internet Information Services Other Vulnerability (CVE-2002-0072)