Out-of-bounds read in Apache HTTP Server - CVE-2017-7679
Published: June 20, 2017 / Updated: February 1, 2021
Vulnerability details
The vulnerability allows a remote attacker to obtain potentially sensitive information.
The vulnerability exists due to out-of-bounds read within the mod_mime when constructing Content-Type response header. A remote attacker read one byte pas the end of a buffer when sending a malicious Content-Type response header.
Affected software
JBoss Core Services
Amazon Linux AMI
Arch Linux
Gentoo Linux
Debian Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux Server - AUS
Red Hat Enterprise Linux for Power, big endian - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux Server - Extended Update Support
Red Hat Enterprise Linux Server - TUS
Ubuntu
Slackware Linux
Fedora
Tenable.sc
apache2 (Alpine package)
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
httpd (Red Hat package)
httpd
firefox (Red Hat package)
IBM API Connect
Dell Secure Connect Gateway
IBM Cloud Pak for Business Automation
How to mitigate CVE-2017-7679
apache2 (Alpine package) - update to 2.4.26-r0
IBM API Connect - update to 5.0.8.12
Dell Secure Connect Gateway - update to 5.12.00.10
httpd (Red Hat package) - update to 2.4.6-40.el7_2.6
httpd - addressed in versions 2.4.26-1.fc24, 2.4.26-1.fc25, 2.4.26-1.fc26, 2.4.27-1.fc25, 2.4.27-2.fc25
IBM Cloud Pak for Business Automation - addressed in versions 21.0.3-IF037, 24.0.0-IF003
firefox (Red Hat package) - update to 115.13.0-3.el8_4
Links to Public Exploits and PoC-codes
- Exploit #5106 - cve-exploits () (February 1, 2021)
- Exploit #2290 - Exploits (Containing Self Made Perl Reproducers / PoC Codes) (April 7, 2020)
- Exploit #2000 - Alien-Framework (Alien-Framework, it is a framework with many CVE exploits and tools to use in pen-testing.) (March 18, 2020)
- Exploit #2096 - CVE-2017-7679-in-python (At this project, we made a python exploit using buffer overflow at the CVE-2017-7679) (March 18, 2020)
External References
Related Security Bulletins
- Multiple vulnerabilities in Apache HTTP server
- Ubuntu update for Apache HTTP Server
- Arch Linux update for apache
- Slackware Linux update for httpd
- Red Hat update for Apache HTTP server
- Red Hat update for Apache HTTP server
- Red Hat update for Apache HTTP server
- Ubuntu update for Apache HTTP Server
- Debian update for apache2
- Gentoo update for Apache
- Amazon Linux AMI update for httpd
- Amazon Linux AMI update for httpd24
- Red Hat update for Apache
- Red Hat update for Apache
- Red Hat update for Apache
- Red Hat update for httpd
- Red Hat update for httpd
- Multiple vulnerabilities in Tenable.sc
- Out-of-bounds read in apache2 (Alpine package)
- Multiple vulnerabilities in DELL Secure Connect Gateway Security
- Multiple vulnerabilities in IBM API Connect
- Red Hat Enterprise Linux 8 update for firefox
- Fedora 25 update for httpd
- Fedora 26 update for httpd
- Fedora 24 update for httpd
- Fedora 25 update for httpd
- Fedora 25 update for httpd
- Red Hat Enterprise Linux 7 update for httpd
- Multiple vulnerabilities in IBM Cloud Pak for Business Automation