The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via unspecified vectors related to a "session overflow" involving "sessions overlapping in memory."
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade mod_auth_mellon | Dec 1, 2016 | Nov 15, 2014 |
| Debian | — | Upgrade libapache2-mod-auth-mellon | Jul 30, 2024 | Nov 15, 2014 |
| Oracle_linux | — | Upgrade mod_auth_mellon | Oct 16, 2024 | Nov 15, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub