Description
Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a large chunk size that triggers a heap-based buffer overflow.
Remediation
References
Related Vulnerabilities
Apache Tomcat Improper Authentication Vulnerability (CVE-2012-5886)
Jenkins Observable Differences in Behavior to Error Inputs Vulnerability (CVE-2020-2101)
WordPress Plugin Slimstat Analytics Cross-Site Scripting (0.9.2)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-2367)