Apache mod_proxy Interim Responses Denial of Service - Advisories - Secunia



A vulnerability has been reported in the Apache mod_proxy module, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to an error in the "ap_proxy_http_process_response()" function when forwarding interim responses. This can be exploited to consume large amounts of memory by tricking mod_proxy into sending an overly large number of interim responses to the client.

Provided and/or discovered by:

The vendor credits Ryujiro Shibuya.
