CVE-2004-0113

N/A Unknown
Published: March 29, 2004 Modified: April 16, 2026
View on NVD

Description

Memory leak in ssl_engine_io.c for mod_ssl in Apache 2 before 2.0.49 allows remote attackers to cause a denial of service (memory consumption) via plain HTTP requests to the SSL port of an SSL-enabled server.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.apacheweek.com/features/security-20
Source: cve@mitre.org
Vendor Advisory
http://www.osvdb.org/4182
Source: cve@mitre.org
http://www.securityfocus.com/bid/9826
Source: cve@mitre.org
Patch Vendor Advisory
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000839
Source: af854a3a-2127-422b-91ae-364da2661108
http://issues.apache.org/bugzilla/show_bug.cgi?id=27106
Source: af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=apache-cvs&m=107869699329638
Source: af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=bugtraq&m=108034113406858&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=bugtraq&m=108369640424244&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=bugtraq&m=108731648532365&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://security.gentoo.org/glsa/glsa-200403-04.xml
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.apacheweek.com/features/security-20
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.osvdb.org/4182
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.redhat.com/support/errata/RHSA-2004-084.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.redhat.com/support/errata/RHSA-2004-182.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/9826
Source: af854a3a-2127-422b-91ae-364da2661108
Patch Vendor Advisory
http://www.trustix.org/errata/2004/0017
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/15419
Source: af854a3a-2127-422b-91ae-364da2661108

58 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
15.7%
95th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

apache