CVE-2007-3847 - CVE House
Back to Database
Status published Medium CVE-2007-3847

The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0,...

Vulnerability Description

The date handling code in modules/proxy/proxy_util.c (mod_proxy) in Apache 2.3.0, when using a threaded MPM, allows remote origin servers to cause a denial of service (caching forward proxy process crash) via crafted date headers that trigger a buffer over-read.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-3847

Credits & Attribution

No credits recorded in the NVD database.

References

Affected Vendor

Affected Software

http server, fedora, fedora core, ubuntu linux
Vulnerable Versions:
2.0.35, 2.2.0, 7, 6, 6.06, 6.10, 7.04, 7.10

Timeline

Official Publish: August 23rd, 2007
Last Modified: August 7th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.