Out-of-bounds read in Apache HTTP Server - CVE-2017-7679

 

Out-of-bounds read in Apache HTTP Server - CVE-2017-7679

Published: June 20, 2017 / Updated: February 1, 2021


Vulnerability identifier: #VU7119
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-7679
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability: Public exploit is available

Vulnerability details

The vulnerability allows a remote attacker to obtain potentially sensitive information.

The vulnerability exists due to out-of-bounds read within the mod_mime when constructing Content-Type response header. A remote attacker read one byte pas the end of a buffer when sending a malicious Content-Type response header.


Affected software

Apache HTTP Server
JBoss Core Services
Amazon Linux AMI
Arch Linux
Gentoo Linux
Debian Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux Server - AUS
Red Hat Enterprise Linux for Power, big endian - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux Server - Extended Update Support
Red Hat Enterprise Linux Server - TUS
Ubuntu
Slackware Linux
Fedora
Tenable.sc
apache2 (Alpine package)
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
httpd (Red Hat package)
httpd
firefox (Red Hat package)
IBM API Connect
Dell Secure Connect Gateway
IBM Cloud Pak for Business Automation

How to mitigate CVE-2017-7679

Update Apache HTTP server to version 2.2.34 or 2.4.26.

Tenable.sc - update to 5.13.0
apache2 (Alpine package) - update to 2.4.26-r0
IBM API Connect - update to 5.0.8.12
Dell Secure Connect Gateway - update to 5.12.00.10
httpd (Red Hat package) - update to 2.4.6-40.el7_2.6
httpd - addressed in versions 2.4.26-1.fc24, 2.4.26-1.fc25, 2.4.26-1.fc26, 2.4.27-1.fc25, 2.4.27-2.fc25
IBM Cloud Pak for Business Automation - addressed in versions 21.0.3-IF037, 24.0.0-IF003
firefox (Red Hat package) - update to 115.13.0-3.el8_4

Links to Public Exploits and PoC-codes

External References

Related Security Bulletins