CVE-2014-8566

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
15/11/2014
Last modified:
12/04/2025

Description

The mod_auth_mellon module before 0.8.1 allows remote attackers to obtain sensitive information or cause a denial of service (segmentation fault) via unspecified vectors related to a "session overflow" involving "sessions overlapping in memory."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:uninett:mod_auth_mellon:*:*:*:*:*:*:*:* 0.8.0 (including)
cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*