Skip to content

Urchin is not vulnerable to latest Apache DoS bug CVE-2011-3192

:: Leave a Comment

There’s a new important bug in apache webserver, all versions are affectedtand allows remote attackers to cause a denial of service DoS (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges.

I’ve just tested it, and looks like latest Urchin Software releases aren’t affected 6.603 and 7.100 .

Host: localhost:9999
Accept-Encoding: gzip
Connection: close

HTTP/1.1 200 OK

You can read more about this bug here: CVE-2011-3192

Published inweb analytics

Be First to Comment

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    This site uses Akismet to reduce spam. Learn how your comment data is processed.