Apache Httpd CVE-2012-0021 Input Validation Bypass Vulnerability

description-logoDescription

A flaw was found in mod_log_config. If the '%{cookiename}C' log format string is in use, a remote attacker could send a specific cookie causing a crash. This crash would only be a denial of service if using a threaded MPM.

affected-products-logoAffected Applications

Apache Httpd

CVE References

CVE-2012-0021