Apache mod_proxy Interim Responses Denial of Service - Advisories - Secunia

Apacheのmod_proxyにDoSを受ける脆弱性が存在するそうです。

ap_proxy_http_process_responseの処理でメモリを食わせて落とせるみたいです。

A vulnerability has been reported in the Apache mod_proxy module, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to an error in the "ap_proxy_http_process_response()" function when forwarding interim responses. This can be exploited to consume large amounts of memory by tricking mod_proxy into sending an overly large number of interim responses to the client.

Provided and/or discovered by:

The vendor credits Ryujiro Shibuya.

screenshot