CVE-2008-5676

Multiple unspecified vulnerabilities in the ModSecurity (aka mod_security) module 2.5.0 through 2.5.5 for the Apache HTTP Server, when SecCacheTransformations is enabled, allow remote attackers to cause a denial of service (daemon crash) or bypass the product's functionality via unknown vectors related to "transformation caching."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:breach:modsecurity:*:*:*:*:*:*:*:*
cpe:2.3:a:breach:modsecurity:*:*:*:*:*:*:*:*
cpe:2.3:a:breach:modsecurity:2.5.1:*:*:*:*:*:*:*
cpe:2.3:a:breach:modsecurity:2.5.2:*:*:*:*:*:*:*
cpe:2.3:a:breach:modsecurity:2.5.3:*:*:*:*:*:*:*
cpe:2.3:a:breach:modsecurity:2.5.4:*:*:*:*:*:*:*

History

21 Nov 2024, 00:54

Type Values Removed Values Added
References () http://blog.modsecurity.org/2008/08/transformation.html - Vendor Advisory () http://blog.modsecurity.org/2008/08/transformation.html - Vendor Advisory
References () http://freshmeat.net/projects/modsecurity/?branch_id=34901&release_id=282329 - () http://freshmeat.net/projects/modsecurity/?branch_id=34901&release_id=282329 -
References () http://secunia.com/advisories/32146 - Vendor Advisory () http://secunia.com/advisories/32146 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2008/2795 - () http://www.vupen.com/english/advisories/2008/2795 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/45770 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/45770 -

Information

Published : 2008-12-19 01:52

Updated : 2024-11-21 00:54


NVD link : CVE-2008-5676

Mitre link : CVE-2008-5676

CVE.ORG link : CVE-2008-5676


JSON object : View

Products Affected

breach

  • modsecurity