CVE-2004-0493

Apache httpd 2.0.49 - DoS/Buffer Overflow

Title source: llm

Description

The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and possibly an integer signedness error leading to a heap-based buffer overflow on 64 bit systems, via long header lines with large numbers of space or tab characters.

Exploits (2)

exploitdb WORKING POC VERIFIED
by anonymous · cdoslinux
https://www.exploit-db.com/exploits/371
exploitdb WORKING POC VERIFIED
by bkbll · perldosmultiple
https://www.exploit-db.com/exploits/360

References (24)

... and 4 more

Scores

EPSS 0.9046
EPSS Percentile 99.6%

Details

Status published
Products (16)
apache/http_server 2.0.47
apache/http_server 2.0.48
apache/http_server 2.0.49
avaya/converged_communications_server 2.0
avaya/s8300 r2.0.0
avaya/s8500 r2.0.0
avaya/s8700 r2.0.0
gentoo/linux 1.4
ibm/http_server 2.0.42
ibm/http_server 2.0.42.1
... and 6 more
Published Aug 06, 2004
Tracked Since Feb 18, 2026