Apache mod_fcgid Module < 2.3.9 fcgid_header_bucket_read() Function Heap-Based Buffer Overflow

Medium Nessus Plugin ID 70682


The remote web server is affected by a buffer overflow vulnerability.


According to its self-reported banner, the Apache web server listening on this port includes a version of the mod_fcgid module earlier than 2.3.9. That reportedly has a heap-based buffer overflow vulnerability because of an error in the pointer arithmetic used in the 'fcgid_header_bucket_read()' function.


Update to version 2.3.9 or later.

See Also

https://www.mail-archive.com/[email protected]/msg58077.html


Plugin Details

Severity: Medium

ID: 70682

File Name: mod_fcgid_2_3_9.nasl

Version: 1.6

Type: remote

Family: Web Servers

Published: 2013/10/29

Updated: 2019/11/27

Dependencies: 10107

Configuration: Enable paranoid mode

Risk Information

Risk Factor: Medium

CVSS Score Source: CVE-2013-4365

CVSS v2.0

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Temporal Vector: CVSS2#E:U/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/a:apache:mod_fcgid

Required KB Items: Settings/ParanoidReport

Exploit Available: false

Exploit Ease: No known exploits are available

Patch Publication Date: 2013/10/08

Vulnerability Publication Date: 2013/09/29

Reference Information

CVE: CVE-2013-4365

BID: 62939