CVE-2003-0542
15Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 30%
exploitation probability
30%top 2% of all CVEs
observed exploitation
nono source reports it
Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.
Affected products
n/a · n/aReferences
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2004.6/SCOSA-2004.6.txtftp://patches.sgi.com/support/free/security/advisories/20031203-01-U.ascftp://patches.sgi.com/support/free/security/advisories/20040202-01-U.aschttp://docs.info.apple.com/article.html?artnum=61798http://httpd.apache.org/dist/httpd/Announcement2.htmlhttp://lists.apple.com/archives/security-announce/2004/Jan/msg00000.htmlhttp://lists.apple.com/mhonarc/security-announce/msg00045.htmlhttp://marc.info/?l=bugtraq&m=106761802305141&w=2http://marc.info/?l=bugtraq&m=130497311408250&w=2http://secunia.com/advisories/10096http://secunia.com/advisories/10098http://secunia.com/advisories/10102