The recall_headers function in mod_mem_cache in Apache 2.2.4 does not properly copy all levels of header data, which can cause Apache to return HTTP headers containing previously used data, which could be used by remote attackers to obtain potentially sensitive information.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T13:13:41.810Z
Reserved: 2007-04-04T00:00:00
Link: CVE-2007-1862
No data.
Status : Deferred
Published: 2007-06-04T23:30:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2007-1862
No data.
OpenCVE Enrichment
No data.
Weaknesses