CVE-2005-2728
EPSS 61.8%
Description
The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumption) via an HTTP header with a large Range field.
How to fix CVE-2005-2728
To remediate CVE-2005-2728, upgrade the affected package to a fixed version below.
- Debian/apache2—upgrade to 2.0.54-5 or later
Is CVE-2005-2728 being exploited?
Likely — EPSS is 61.8%, placing CVE-2005-2728 in the top tier of vulnerabilities by exploitation probability. Prioritise patching.
Affected packages (1)
- from 0, < 2.0.54-5