httpd: request header information leak
Published Mar 5, 2010
4.3
MEDIUMCVSS 2.0
EPSS 18.44%
Description
The ap_read_request function in server/protocol.c in the Apache HTTP Server 2.2.x before 2.2.15, when a multithreaded MPM is used, does not properly handle headers in subrequests in certain circumstances involving a parent request that has a body, which might allow remote attackers to obtain sensitive information via a crafted request that triggers access to memory locations associated with an earlier request.
Affected products
No data.
Configuration 1
- ≥ 2.0.35 · < 2.0.64
- ≥ 2.2.0 · < 2.2.15
Configuration 2
- 11
- 13
Configuration 3
- 5.0
- 6.0
No data.
JBEWS 1.0 for RHEL 4
httpd22-0:2.2.14-11.jdk6.ep5.el4
Fixed · RHSA-2010:0396
Red Hat Certificate System 7.3
ant-0:1.6.5-1jpp_1rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
avalon-logkit-0:1.2-2jpp_4rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
axis-0:1.2.1-1jpp_3rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
classpathx-jaf-0:1.0-2jpp_6rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
classpathx-mail-0:1.1.1-2jpp_8rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
geronimo-specs-0:1.0-0.M4.1jpp_10rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
jakarta-commons-modeler-0:2.0-3jpp_2rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
log4j-0:1.2.12-1jpp_1rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
mx4j-1:3.0.1-1jpp_4rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
pcsc-lite-0:1.3.3-3.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
rhpki-ca-0:7.3.0-20.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
rhpki-java-tools-0:7.3.0-10.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
rhpki-kra-0:7.3.0-14.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
rhpki-manage-0:7.3.0-19.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
rhpki-native-tools-0:7.3.0-6.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
rhpki-ocsp-0:7.3.0-13.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
rhpki-tks-0:7.3.0-13.el4
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
tomcat5-0:5.5.23-0jpp_4rh.16
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
xerces-j2-0:2.7.1-1jpp_1rh
Fixed · RHSA-2010:0602
Red Hat Certificate System 7.3
xml-commons-0:1.3.02-2jpp_1rh
Fixed · RHSA-2010:0602
Red Hat Enterprise Linux 4
httpd-0:2.0.52-41.ent.7
Fixed · RHSA-2010:0175
Red Hat Enterprise Linux 5
httpd-0:2.2.3-31.el5_4.4
Fixed · RHSA-2010:0168
Red Hat JBoss Enterprise Web Server 1 for RHEL 5
httpd-0:2.2.14-1.2.6.jdk6.ep5.el5
Fixed · RHSA-2010:0396
| Product | Package | State | Advisory |
|---|---|---|---|
| JBEWS 1.0 for RHEL 4 | httpd22-0:2.2.14-11.jdk6.ep5.el4 | Fixed | RHSA-2010:0396 |
| Red Hat Certificate System 7.3 | ant-0:1.6.5-1jpp_1rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | avalon-logkit-0:1.2-2jpp_4rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | axis-0:1.2.1-1jpp_3rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | classpathx-jaf-0:1.0-2jpp_6rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | classpathx-mail-0:1.1.1-2jpp_8rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | geronimo-specs-0:1.0-0.M4.1jpp_10rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | jakarta-commons-modeler-0:2.0-3jpp_2rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | log4j-0:1.2.12-1jpp_1rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | mx4j-1:3.0.1-1jpp_4rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | pcsc-lite-0:1.3.3-3.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | rhpki-ca-0:7.3.0-20.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | rhpki-java-tools-0:7.3.0-10.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | rhpki-kra-0:7.3.0-14.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | rhpki-manage-0:7.3.0-19.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | rhpki-native-tools-0:7.3.0-6.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | rhpki-ocsp-0:7.3.0-13.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | rhpki-tks-0:7.3.0-13.el4 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | tomcat5-0:5.5.23-0jpp_4rh.16 | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | xerces-j2-0:2.7.1-1jpp_1rh | Fixed | RHSA-2010:0602 |
| Red Hat Certificate System 7.3 | xml-commons-0:1.3.02-2jpp_1rh | Fixed | RHSA-2010:0602 |
| Red Hat Enterprise Linux 4 | httpd-0:2.0.52-41.ent.7 | Fixed | RHSA-2010:0175 |
| Red Hat Enterprise Linux 5 | httpd-0:2.2.3-31.el5_4.4 | Fixed | RHSA-2010:0168 |
| Red Hat JBoss Enterprise Web Server 1 for RHEL 5 | httpd-0:2.2.14-1.2.6.jdk6.ep5.el5 | Fixed | RHSA-2010:0396 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:N/C:P/I:N/A:N
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (16 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 18.44% (0.18443) | 97.16th | v5 (v2026.06.15) |
| Jun 15, 2026 | 18.44% (0.18443) | 96.86th | v5 (v2026.06.15) |
| Apr 29, 2026 | 5.39% (0.05390) | 90.15th | v4 (v2025.03.14) |
| Sep 4, 2025 | 3.13% (0.03130) | 86.36th | v4 (v2025.03.14) |
| Sep 1, 2025 | 5.56% (0.05563) | 89.98th | v4 (v2025.03.14) |
| Aug 4, 2025 | 3.13% (0.03130) | 86.36th | v4 (v2025.03.14) |
| Aug 1, 2025 | 5.56% (0.05563) | 89.98th | v4 (v2025.03.14) |
| Mar 30, 2025 | 2.55% (0.02554) | 84.15th | v4 (v2025.03.14) |
| Mar 29, 2025 | 4.58% (0.04585) | 81.67th | v4 (v2025.03.14) |
| Mar 17, 2025 | 2.55% (0.02554) | 84.46th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.32% (0.00318) | 71.33th | v3 (v2023.03.01) |
| Feb 8, 2024 | 0.32% (0.00316) | 69.53th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.32% (0.00316) | 65.59th | v3 (v2023.03.01) |
| Mar 6, 2023 | 7.34% (0.07344) | 92.59th | v2 (v2022.01.01) |
| Apr 1, 2022 | 7.34% (0.07344) | 91.87th | v2 (v2022.01.01) |
| Feb 4, 2022 | 7.34% (0.07344) | 80.64th | v2 (v2022.01.01) |
References (62)
- http://httpd.apache.org/security/vulnerabilities_22.html x_refsource_CONFIRMPatchVendor Advisory
- http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html vendor-advisoryx_refsource_APPLEBroken LinkMailing List
- http://lists.fedoraproject.org/pipermail/package-announce/2010-April/039957.html vendor-advisoryx_refsource_FEDORAMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2010-May/040652.html vendor-advisoryx_refsource_FEDORAMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00006.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.vmware.com/pipermail/security-announce/2010/000105.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=127557640302499&w=2 vendor-advisoryx_refsource_HPIssue TrackingMailing ListThird Party Advisory
- http://secunia.com/advisories/39100 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/39115 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/39501 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/39628 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/39632 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/39656 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/40096 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://support.apple.com/kb/HT4435 x_refsource_CONFIRMBroken Link
- http://svn.apache.org/viewvc/httpd/httpd/branches/2.2.x/server/protocol.c?r1=917617&r2=917867&pathrev=917867&diff_format=h x_refsource_CONFIRMPatchVendor Advisory
- http://svn.apache.org/viewvc?view=revision&revision=917867 x_refsource_CONFIRMPatchVendor Advisory
- http://svn.apache.org/viewvc?view=revision&revision=918427 x_refsource_CONFIRMPatchVendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1PM08939 vendor-advisoryx_refsource_AIXAPARThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1PM12247 vendor-advisoryx_refsource_AIXAPARThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1PM15829 vendor-advisoryx_refsource_AIXAPARThird Party Advisory
- http://www.debian.org/security/2010/dsa-2035 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html x_refsource_CONFIRMThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0168.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0175.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://www.securityfocus.com/bid/38494 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.vmware.com/security/advisories/VMSA-2010-0014.html x_refsource_CONFIRMThird Party Advisory
- http://www.vupen.com/english/advisories/2010/0911 vdb-entryx_refsource_VUPENPermissions Required
- http://www.vupen.com/english/advisories/2010/0994 vdb-entryx_refsource_VUPENPermissions Required
- http://www.vupen.com/english/advisories/2010/1001 vdb-entryx_refsource_VUPENPermissions Required
- http://www.vupen.com/english/advisories/2010/1057 vdb-entryx_refsource_VUPENPermissions Required
- http://www.vupen.com/english/advisories/2010/1411 vdb-entryx_refsource_VUPENPermissions Required
- https://access.redhat.com/security/cve/CVE-2010-0434 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=570171 x_refsource_CONFIRMIssue TrackingThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56625 vdb-entryx_refsource_XFThird Party AdvisoryVDB Entry
- https://issues.apache.org/bugzilla/show_bug.cgi?id=48359 x_refsource_CONFIRMIssue TrackingVendor Advisory
- https://lists.apache.org/thread.html/54a42d4b01968df1117cea77fc53d6beb931c0e05936ad02af93e9ac%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/5df9bfb86a3b054bb985a45ff9250b0332c9ecc181eec232489e7f79%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/8d63cb8e9100f28a99429b4328e4e7cebce861d5772ac9863ba2ae6f%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/f7f95ac1cd9895db2714fa3ebaa0b94d0c6df360f742a40951384a53%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r0276683d8e1e07153fc8642618830ac0ade85b9ae0dc7b07f63bb8fc%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r2cb985de917e7da0848c440535f65a247754db8b2154a10089e4247b%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r476d175be0aaf4a17680ef98c5153b4d336eaef76fb2224cc94c463a%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r57608dc51b79102f3952ae06f54d5277b649c86d6533dcd6a7d201f7%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r5f9c22f9c28adbd9f00556059edc7b03a5d5bb71d4bb80257c0d34e4%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r688df6f16f141e966a0a47f817e559312b3da27886f59116a94b273d%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r75cbe9ea3e2114e4271bbeca7aff96117b50c1b6eb7c4772b0337c1f%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r8828e649175df56f1f9e3919938ac7826128525426e2748f0ab62feb%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r9e8622254184645bc963a1d47c5d47f6d5a36d6f080d8d2c43b2b142%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r9ea3538f229874c80a10af473856a81fbf5f694cd7f471cc679ba70b%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rad01d817195e6cc871cb1d73b207ca326379a20a6e7f30febaf56d24%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rad2acee3ab838b52c04a0698b1728a9a43467bf365bd481c993c535d%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rb9c9f42dafa25d2f669dac2a536a03f2575bc5ec1be6f480618aee10%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rdca61ae990660bacb682295f2a09d34612b7bb5f457577fe17f4d064%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/re2e23465bbdb17ffe109d21b4f192e6b58221cd7aa8797d530b4cd75%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rfbaf647d52c1cb843e726a0933f156366a806cead84fbd430951591b%40%3Ccvs.httpd.apache.org%3E mailing-listx_refsource_MLIST
- https://nvd.nist.gov/vuln/detail/CVE-2010-0434
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10358 vdb-entrysignaturex_refsource_OVALThird Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8695 vdb-entrysignaturex_refsource_OVALThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2010-0434
Change history (0)
No recorded changes yet.