Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2002-0082

EPSS 2.33% · P85
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2002-0082

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The dbm and shm session cache code in mod_ssl before 2.8.7-1.3.23, and Apache-SSL before 1.3.22+1.46, does not properly initialize memory using the i2d_SSL_SESSION function, which allows remote attackers to use a buffer overflow to execute arbitrary code via a large client certificate that is signed by a trusted Certificate Authority (CA), which produces a large serialized session.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apache-SSL和mod_ssl 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apache-SSL是美国Apache软件基金会的一个Apache服务器上的SSL实现,用来为Apache Web服务器提供加密支持。它利用OpenSSL来完成SSL实现。mod_ssl是mod_ssl项目的一个Apache服务器上的SSL实现,用来为Apache Web服务器提供加密支持。它利用OpenSSL来完成SSL实现。 mod_ssl 2.8.7-1.3.23之前版本和Apache-SSL 1.3.22+1.46之前版本中的dbm和shm会话缓存代码存在安全漏洞。攻击者可利用该漏洞执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2002-0082

#POC DescriptionSource LinkShenlong Link
1CVE-2002-0082https://github.com/ratiros01/CVE-2002-0082POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2002-0082

登录查看更多情报信息。

Same Patch Batch · n/a · 2002-06-25 · 190 CVEs total

CVE-2002-0027Microsoft Internet Explorer安全漏洞
CVE-2002-0002STunnel客户端协商协议格式串溢出漏洞
CVE-2002-0003Groff预处理器缓冲区溢出漏洞
CVE-2002-0004AT 畸形时间格式导致堆溢出漏洞
CVE-2002-0007BugZilla LDAP认证绕过漏洞
CVE-2002-0018Microsoft Windows网络域间信任关系提升权限漏洞(MS02-001)
CVE-2002-0020Microsoft Telnet Server协议选项缓冲溢出漏洞(MS02-004)
CVE-2002-0021Macintosh Microsoft Office v. X Network PID检查器服务拒绝漏洞
CVE-2002-0022Microsoft Internet Explorer安全漏洞
CVE-2002-0023Microsoft Internet Explorer安全漏洞
CVE-2002-0025Microsoft Internet Explorer安全漏洞
CVE-2002-0026Microsoft Internet Explorer安全漏洞
CVE-2002-0045OpenLDAP认证用户目标属性缺失漏洞
CVE-2002-0051Microsoft Windows 2000组策略锁定漏洞(MS02-016)
CVE-2002-0050Microsoft Commerce Server ISAPI远程缓冲区溢出漏洞(MS02-033)
CVE-2002-0049Microsoft Exchange Server 安全漏洞
CVE-2002-0047CIPE VPN数据包服务拒绝漏洞
CVE-2002-0046Linux kernel内存信息泄露漏洞
CVE-2002-0040SGI IRIX HOSTALIASES拒绝服务攻击漏洞
CVE-2002-0028ICQ缓冲区溢出漏洞

Showing top 20 of 190 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2002-0082

No comments yet


Leave a comment