Apache Httpd CVE-2011-0419 Denial of Service Vulnerability

description-logoDescription

A flaw was found in the apr_fnmatch() function of the bundled APR library. Where mod_autoindex is enabled, and a directory indexed by mod_autoindex contained files with sufficiently long names, a remote attacker could send a carefully crafted request which would cause excessive CPU usage. This could be used in a denial of service attack.

affected-products-logoAffected Applications

Apache Httpd

CVE References

CVE-2011-0419