The (1) mod_cache and (2) mod_dav modules in the Apache HTTP Server 2.2.x before 2.2.16 allow remote attackers to cause a denial of service (process crash) via a request that lacks a path.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apache Httpd | — | Upgrade to the latest version of Apache HTTPD | Apr 12, 2012 | Jul 28, 2010 |
| Apache Httpd 2_0_x | — | — | Oct 26, 2010 | Jul 28, 2010 |
| Apache Httpd 2_2_x Mod_cache And Mod_dav Dos | — | — | Aug 16, 2010 | Jul 28, 2010 |
| Apple Osx Airport | — | Upgrade macOS to the latest versionApply OS X security update 2011-004Apply OS X security update 2011-001 | Aug 28, 2015 | Jul 28, 2010 |
| Apple Osx Apache | — | Upgrade macOS to the latest versionApply OS X security update 2011-001 | Dec 16, 2011 | Jul 28, 2010 |
| Centos_linux | — | Upgrade mod_sslUpgrade httpd-manualUpgrade httpd-develUpgrade httpd | Dec 1, 2016 | Jul 28, 2010 |
| Debian | — | Upgrade apache2 | Jul 30, 2024 | Jul 28, 2010 |
| Freebsd | — | Upgrade apache | Dec 10, 2025 | Jul 26, 2010 |
| Gentoo Linux | — | Upgrade www-servers/apache. | Oct 30, 2017 | Jul 28, 2010 |
| Hpsmh | — | Upgrade to the latest version of HP System Management Homepage | Oct 13, 2015 | Jul 28, 2010 |
| Hpux | — | Update hpuxwsAPCH32.PHP to the latest versionUpdate hpuxwsAPACHE.MOD_PERL to the latest versionUpdate hpuxwsAPACHE.PHP2 to the latest versionUpdate hpuxwsAPACHE.AUTH_LDAP2 to the latest versionUpdate hpuxwsAPCH32.APACHE to the latest versionUpdate hpuxwsAPACHE.PHP to the latest versionUpdate hpuxwsAPCH32.AUTH_LDAP2 to the latest versionUpdate hpuxwsAPACHE.MOD_PERL2 to the latest versionUpdate hpuxwsAPACHE.MOD_JK to the latest versionUpdate hpuxwsAPCH32.APACHE2 to the latest versionUpdate hpuxwsAPACHE.APACHE2 to the latest versionUpdate hpuxwsAPCH32.MOD_JK to the latest versionUpdate hpuxwsAPCH32.AUTH_LDAP to the latest versionUpdate hpuxwsAPCH32.MOD_PERL to the latest versionUpdate hpuxwsAPACHE.APACHE to the latest versionUpdate hpuxwsAPCH32.MOD_PERL2 to the latest versionUpdate hpuxwsAPCH32.MOD_JK2 to the latest versionUpdate hpuxwsAPCH32.WEBPROXY to the latest versionUpdate hpuxwsAPACHE.AUTH_LDAP to the latest versionUpdate hpuxwsAPACHE.WEBPROXY to the latest versionUpdate hpuxwsAPCH32.PHP2 to the latest versionUpdate hpuxwsAPACHE.MOD_JK2 to the latest version | Aug 11, 2017 | Jul 28, 2010 |
| Oracle_linux | — | Upgrade httpd-develUpgrade httpdUpgrade httpd-manualUpgrade mod_ssl | Oct 16, 2024 | Jul 28, 2010 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jul 21, 2010 |
| Suse | — | Upgrade apache2-manualUpgrade apache2-develUpgrade apache2-preforkUpgrade apache2-example-pagesUpgrade apache2-utilsUpgrade apache2-docUpgrade apache2Upgrade apache2-workerUpgrade apache2-event | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade apache2.2-commonUpgrade apache2-common | Nov 8, 2024 | Jul 28, 2010 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub