Security Advisory

CVE-2002-0839

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2002-10-05 04:00:00
Last updated 2024-08-08 03:03:49
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The shared memory scoreboard in the HTTP daemon for Apache 1.3.x before 1.3.27 allows any user running as the Apache UID to send a SIGUSR1 signal to any process as root, resulting in a denial of service (process kill) or possibly other behaviors that would not normally be allowed, by modifying the parent[].pid and parent[].last_rtime segments in the scoreboard.