CRITICAL · 9.1

CVE-2017-9788

In Apache httpd before 2.2.34 and 2.4.x before 2.4.27, the value placeholder in [Proxy-]Authorization headers of type 'Digest' was not initialized or reset before or between successive key=value assig...

Vulnerability Description

In Apache httpd before 2.2.34 and 2.4.x before 2.4.27, the value placeholder in [Proxy-]Authorization headers of type 'Digest' was not initialized or reset before or between successive key=value assignments by mod_auth_digest. Providing an initial key with no '=' assignment could reflect the stale value of uninitialized pool memory used by the prior request, leading to leakage of potentially confidential information, and a segfault in other cases resulting in denial of service.

CVSS Score

9.1

CRITICAL

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
ApacheHttp Server<= 2.2.33
DebianDebian Linux8.0
AppleMac Os X< 10.13.1
NetappOncommand Unified Manager-
NetappStorage Automation Store-
RedhatEnterprise Linux Desktop6.0
RedhatEnterprise Linux Server6.0
RedhatEnterprise Linux Server Aus7.2
RedhatEnterprise Linux Server Eus6.7
RedhatEnterprise Linux Server Tus7.2
RedhatEnterprise Linux Workstation6.0
RedhatJboss Core Services1.0
RedhatJboss Enterprise Application Platform6.0.0
RedhatJboss Enterprise Web Server2.0.0
RedhatEnterprise Linux6.0
OracleSecure Global Desktop5.3

Related Weaknesses (CWE)

References

FAQ

What is CVE-2017-9788?

CVE-2017-9788 is a vulnerability with a CVSS score of 9.1 (CRITICAL). In Apache httpd before 2.2.34 and 2.4.x before 2.4.27, the value placeholder in [Proxy-]Authorization headers of type 'Digest' was not initialized or reset before or between successive key=value assig...

How severe is CVE-2017-9788?

CVE-2017-9788 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2017-9788?

Check the references section above for vendor advisories and patch information. Affected products include: Apache Http Server, Debian Debian Linux, Apple Mac Os X, Netapp Oncommand Unified Manager, Netapp Storage Automation Store.