CVE-2012-4557
EPSS 26.0%apache2 - several
Published: 11/30/2012Modified: 4/28/2026
Description
The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon detection of a long request-processing time, which allows remote attackers to cause a denial of service (worker consumption) via an expensive request.
Affected packages (2)
- Debian/apache2from 0, < 2.2.22-1
- Debian/apache2from 0, < 2.2.16-6+squeeze10